<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;DUMMQH47eip7ImA9WhRUGUs.&quot;"><id>tag:blogger.com,1999:blog-22914061</id><updated>2012-01-31T03:21:21.002+03:30</updated><category term="Windows XP" /><category term="Fedora" /><category term="suggestion" /><category term="solution" /><category term="Operation System" /><category term="news" /><category term="microtransactions" /><category term="Clearwire" /><category term="crops" /><category term="certified" /><category term="PayPal" /><category term="privacy" /><category term="poll" /><category term="Apple" /><category term="Live Spaces" /><category term="sprint" /><category term="picasa" /><category term="ONLINE VIDEO" /><category term="This Blog Update" /><category term="google chrome extension" /><category term="HTC Incredible" /><category term="Facebook Privacy" /><category term="Logitech" /><category term="Vulnerability" /><category term="Mac OS X" /><category term="Censorship" /><category term="email" /><category term="Sony Ericsson" /><category term="windows Mobile" /><category term="erskine bowles" /><category term="Microsoft office 2011" /><category term="Dropbox" /><category term="Evian Babies" /><category term="visa" /><category term="Live Essentials" /><category term="Fail" /><category term="SmartScreen" /><category term="SecondLife" /><category term="attack" /><category term="MSN" /><category term="Notetaking" /><category term="Internet Explorer 10" /><category term="Pwn2Own" /><category term="leak" /><category term="cheaters" /><category term="government" /><category term="nested labels" /><category term="RealPlayer" /><category term="UK" /><category term="international domain names" /><category term="WebM" /><category term="KIN" /><category term="Windows Phone 7" /><category term="Firefox" /><category term="ipad apps" /><category term="FTC" /><category term="tablets" /><category term="flickr" /><category term="CIA" /><category term="Grady Sizemore" /><category term="Internet Explorer" /><category term="Steve Ballmer" /><category term="google Refine" /><category term="Deutsche Telekom" /><category term="ubuntu" /><category term="nvidia" /><category term="space" /><category term="technology" /><category term="Microsoft" /><category term="hugh hefner" /><category term="HTC EVO 4G" /><category term="facebook credits" /><category term="Motorola Mobility" /><category term="Interview" /><category term="Strings" /><category term="kernel.org" /><category term="Jumo" /><category term="NATO" /><category term="survey" /><category term="compare" /><category term="Smartphone" /><category term="hoax" /><category term="web series" /><category term="SSL" /><category term="Tor Project" /><category term="Virtualization" /><category term="google os" /><category term="colorware" /><category term="Cloud" /><category term="FeedBurner" /><category term="customization" /><category term="driver" /><category term="hack" /><category term="Updates" /><category term="Microsoft Office 365" /><category term="Showtime" /><category term="Ubisoft" /><category term="Picasa Web Albums" /><category term="blippy" /><category term="WordPress" /><category term="PlayBoy" /><category term="music" /><category term="PowerPoint" /><category term="Fun" /><category term="PHP" /><category term="Piracy" /><category term="arabic" /><category term="phishing" /><category term="Google Chrome" /><category term="Buddy Media" /><category term="google earth" /><category term="nexus one" /><category term="ATI" /><category term="Hardware" /><category term="social media" /><category term="P2P" /><category term="wireless networking" /><category term="foursquare" /><category term="gmail" /><category term="VOIP" /><category term="Silverlight" /><category term="Kaspersky" /><category term="Download" /><category term="Google Mail" /><category term="Avira" /><category term="Google TV" /><category term="Game" /><category term="Settlement" /><category term="ICQ" /><category term="Amazon" /><category term="AOL" /><category term="Brittany Binger" /><category term="seesmic" /><category term="promo" /><category term="dr. seuss" /><category term="donate" /><category term="buzz aldrin" /><category term="France Telecom" /><category term="mobile phones" /><category term="rumor" /><category term="Announcement" /><category term="norton" /><category term="swipely" /><category term="Photoshop" /><category term="social media monitoring" /><category term="viral video" /><category term="Flash" /><category term="LinkedIn" /><category term="windows Server" /><category term="Safari" /><category term="social media analytics" /><category term="firmware" /><category term="app" /><category term="pop culture" /><category term="credit cards" /><category term="mcafee" /><category term="droid" /><category term="review" /><category term="Adobe" /><category term="iphone apps" /><category term="commercials" /><category term="HTC" /><category term="geotagging" /><category term="Real-Time Search" /><category term="WikiLeaks" /><category term="Thunderbird" /><category term="Winamp" /><category term="Financial Times" /><category term="Wii" /><category term="sophos" /><category term="gaming" /><category term="Bookmarks" /><category term="Core i3" /><category term="Nook" /><category term="Delicious" /><category term="Map" /><category term="Safari 5" /><category term="Creative Suite" /><category term="0-Day" /><category term="facebook phishing" /><category term="intel" /><category term="software" /><category term="Nudity" /><category term="tweet" /><category term="Lenovo" /><category term="Project Natal" /><category term="gmail labs" /><category term="scam" /><category term="Bandwidth" /><category term="Foxit" /><category term="exploit" /><category term="satellite" /><category term="itunes" /><category term="Google Maps" /><category term="blackberry apps" /><category term="Twitter" /><category term="iphone os" /><category term="Angela Merkel" /><category term="Xbox 360" /><category term="Navigation" /><category term="Hotmail" /><category term="Domain" /><category term="forum" /><category term="Goo.gl" /><category term="panda" /><category term="Verizon iPhone" /><category term="Interesting" /><category term="developers" /><category term="social networking" /><category term="Twitter Trend" /><category term="sobees" /><category term="movie trailers" /><category term="Financial results" /><category term="Google Circles" /><category term="virtual goods" /><category term="WOT" /><category term="Google E-Bookstore" /><category term="layoffs" /><category term="Yahoo" /><category term="WiMax" /><category term="Mail" /><category term="Microsoft Office" /><category term="Embedded Tweets" /><category term="Microwave" /><category term="Messenger" /><category term="web video" /><category term="broadband" /><category term="Global IP Solutions" /><category term="iBooks" /><category term="games" /><category term="WordPress 3.0" /><category term="Stuxnet" /><category term="YouTube" /><category term="volcano" /><category term="IDN" /><category term="Java" /><category term="Search" /><category term="BlackBerry" /><category term="security essnetials" /><category term="samsung" /><category term="API" /><category term="VLC" /><category term="Blogging" /><category term="microsoft office 2010" /><category term="ICANN" /><category term="BLOGS" /><category term="Browser" /><category term="antivirus" /><category term="Chirp" /><category term="mobile applications" /><category term="entertainment" /><category term="farmville" /><category term="WD" /><category term="Hijack" /><category term="Password" /><category term="Marmo" /><category term="droid incredible" /><category term="Documentary" /><category term="rental" /><category term="Palm Pixi" /><category term="Duqu" /><category term="translate" /><category term="Web Disgn" /><category term="today show" /><category term="Outlook" /><category term="google news" /><category term="ping" /><category term="apple app store" /><category term="malware" /><category term="offline" /><category term="Windows Touch" /><category term="Offer" /><category term="events" /><category term="Film" /><category term="Windows" /><category term="Israel" /><category term="Domain Names" /><category term="corporate" /><category term="Skype" /><category term="job" /><category term="Evian" /><category term="The White House" /><category term="Other" /><category term="worlds news" /><category term="Illstrator" /><category term="Sex" /><category term="study" /><category term="spam" /><category term="apps" /><category term="profits" /><category term="teardown" /><category term="App Store" /><category term="Game console" /><category term="exclusivity" /><category term="iOS" /><category term="Internet TV" /><category term="iphone app store" /><category term="Mobile 2.0" /><category term="Video" /><category term="Maemo" /><category term="IBM" /><category term="price" /><category term="Codec" /><category term="Publishing" /><category term="PDF" /><category term="Google Code" /><category term="StreetView" /><category term="online games" /><category term="Opera" /><category term="FBI" /><category term="OpenOffice" /><category term="Tumblr" /><category term="Eric Schmidt" /><category term="on-demand" /><category term="Theme" /><category term="Goggles" /><category term="trojan" /><category term="MySpace" /><category term="trending" /><category term="Question and Answer" /><category term="Palm webOS" /><category term="obama" /><category term="problems" /><category term="report" /><category term="Google Plus" /><category term="checkins" /><category term="alert" /><category term="VMware" /><category term="SeaMoney" /><category term="palm" /><category term="MacBook Air" /><category term="google cloud print" /><category term="nexus s" /><category term="Steam" /><category term="GTalk" /><category term="jailbreak" /><category term="windows vista" /><category term="Unix" /><category term="Writer" /><category term="Discontinue" /><category term="Telefonica" /><category term="threater" /><category term="iTunes 9.1" /><category term="Googlemail" /><category term="Photos" /><category term="SME" /><category term="imagery" /><category term="google instant" /><category term="Ghaddafi" /><category term="Norway" /><category term="iProd" /><category term="Anonymous" /><category term="rogue software" /><category term="Oracle" /><category term="Windows Phone" /><category term="Google website optimizer" /><category term="ISP" /><category term="RedHat" /><category term="QuickTime" /><category term="Library of Congress" /><category term="breaking" /><category term="Marissa Mayer" /><category term="steve jobs" /><category term="Nintendo" /><category term="voice" /><category term="Instant Messaging" /><category term="AMD" /><category term="follow up" /><category term="Apple Tablet" /><category term="Google I/O" /><category term="Facebook" /><category term="iPod Touch" /><category term="manual" /><category term="HP" /><category term="tweetdeck" /><category term="gossip" /><category term="Premiere" /><category term="Cloud Computing" /><category term="Office" /><category term="RIAA" /><category term="Patch Tuesday" /><category term="Extension" /><category term="Zynga" /><category term="verizon" /><category term="InDesign" /><category term="google chrome Web Store" /><category term="Google" /><category term="Bing" /><category term="Linux" /><category term="flash player" /><category term="awards" /><category term="sobees for facebook" /><category term="VirusTotal" /><category term="att" /><category term="debt" /><category term="internet explorer 9" /><category term="SQL" /><category term="cable" /><category term="The Lorax" /><category term="printing" /><category term="eBay" /><category term="off broadway" /><category term="Mark Zuckerberg" /><category term="Nook e-reader" /><category term="locations" /><category term="google docs" /><category term="Magazine" /><category term="jimmy kimmel" /><category term="travel" /><category term="iphone" /><category term="google job" /><category term="tips" /><category term="Beta" /><category term="sports" /><category term="PC" /><category term="link" /><category term="Nuclear" /><category term="Facebook social plugins" /><category term="Online Shopping" /><category term="Web 3.0" /><category term="laptop" /><category term="humor" /><category term="Zynamics" /><category term="Web App" /><category term="4G" /><category term="alanyze" /><category term="business" /><category term="TV" /><category term="advice" /><category term="Sony" /><category term="video games" /><category term="Nokia" /><category term="security" /><category term="ipad 2" /><category term="Live TV" /><category term="Blogger" /><category term="Dreamweaver" /><category term="multimedia" /><category term="casual games" /><category term="BusinessWeek" /><category term="google chrome os" /><category term="Development" /><category term="Iceland" /><category term="analyze" /><category term="digg" /><category term="Canonical" /><category term="Photographers" /><category term="europe" /><category term="stats" /><category term="screenshot" /><category term="plugins" /><category term="XSS" /><category term="WordPress Theme" /><category term="Firefox Addon" /><category term="Disney" /><category term="Palm Pre" /><category term="Firefox 4.0" /><category term="iPad 3G" /><category term="MacBook" /><category term="media" /><category term="Kindle" /><category term="earth day" /><category term="Netflix" /><category term="Windows 8" /><category term="Wishlist" /><category term="status updates" /><category term="mobile apps" /><category term="ipad" /><category term="telecom" /><category term="Windows Live" /><category term="Mobile Browsers" /><category term="Opera Mini" /><category term="3G" /><category term="Facebook Chat" /><category term="gnome" /><category term="Google Toolbar" /><category term="google cloud" /><category term="URL Shortening" /><category term="Xmarks" /><category term="Canon" /><category term="issues" /><category term="Mozilla" /><category term="enterprise" /><category term="Mac vs PC" /><category term="icade" /><category term="IPv4" /><category term="MARKETING" /><category term="internet" /><category term="lawsuit" /><category term="Android" /><category term="HTML5" /><category term="StumbleUpon" /><category term="Windows 7" /><category term="Mobile" /><category term="Kids" /><category term="Google CEO" /><category term="Evernote" /><category term="George W. Bush" /><category term="politics" /><category term="Open Web" /><category term="ThePirateBay" /><category term="Eyjafjallajokull" /><category term="How to" /><category term="Tech" /><category term="streaming" /><category term="fortune 500" /><category term="celeb" /><category term="symantec" /><category term="gross national happiness" /><category term="television" /><category term="Germany" /><category term="PhotoFast" /><category term="Iran" /><category term="3D" /><category term="SEO" /><category term="hard drive" /><category term="Torrent" /><category term="Google privacy" /><category term="Notebook" /><category term="warning" /><category term="Tricks" /><category term="Flock" /><category term="NASA" /><category term="WiFi" /><category term="T-Mobile" /><category term="Square" /><title type="text">Omid's TechBlog!</title><subtitle type="html">Latest computer and Internet security news.</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://techblog.omidfarhang.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>1167</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/OmidsBlog" /><feedburner:info uri="omidsblog" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:emailServiceId>OmidsBlog</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><entry gd:etag="W/&quot;AkUEQXw6eip7ImA9WhRUFE0.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-6546778498522977126</id><published>2012-01-24T16:00:00.000+03:30</published><updated>2012-01-24T16:00:00.212+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-24T16:00:00.212+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="phishing" /><category scheme="http://www.blogger.com/atom/ns#" term="malware" /><category scheme="http://www.blogger.com/atom/ns#" term="scam" /><category scheme="http://www.blogger.com/atom/ns#" term="advice" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>Megaupload, up again? no</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;b&gt;&lt;a href="http://www.gfi.com/blog/megaup-doh/" target="_blank"&gt;GFI&lt;/a&gt;:&lt;/b&gt; You’re probably aware that Megaupload has wandered into what can only be described as &lt;a href="http://www.bloomberg.com/news/2012-01-24/megaupload-s-dotcom-in-custody-as-new-zealand-awaits-extradition-request.html" target="_blank"&gt;a bit of a pickle&lt;/a&gt;, assuming said pickle is roughly the size of a Vogon Constructor Fleet.&lt;br /&gt;
&lt;br /&gt;
Given that lots of people probably want to take a peek at the FBI Anti-Warning currently pasted across the front of Megaupload.com (or maybe even just see if the site is back online), it’s a fair bet that Ye Olde Typo Fairy will be called into action and some of them will end up going to Megaupload(dot)cm.&lt;br /&gt;
&lt;br /&gt;
You can see what they did there.&lt;br /&gt;
&lt;br /&gt;
On the basis that Wikipedia hasn’t gone dark for a day or covered itself in pictures of Jimmy Wales, we can see that the &lt;a href="https://en.wikipedia.org/wiki/.cm" target="_blank"&gt;.cm TLD&lt;/a&gt; is intended for domains connected with Cameroon. Typosquatting seems to be a bit of a thing:&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&amp;nbsp;In a report published in December 2009 by McAfee, “Mapping the Mal Web – The world’s riskiest domain”, .cm was reportedly the riskiest domain in the world, with 36.7% of the sites posing a security risk to PCs. [&lt;a href="http://news.cnet.com/8301-1009_3-10407530-83.html" target="_blank"&gt;5&lt;/a&gt;] It is widely assumed that malicious domain programmers rely on inadvertent misspellings of well-trafficked websites ending in “.com” to lure unsuspecting users to their domains.&lt;/blockquote&gt;
Registered back in 2009, Megaupload(dot)cm takes you a site located at surveytakelive(dot)com, which tells us via the method of popup box that there are prizes up for grabs and you’ll have to fill in some personal information.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-d9IzquD2MCA/Tx6jiNLHDlI/AAAAAAAAEak/3Lpn5MXPV7c/s1600/megauploadcm1.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="293" src="http://3.bp.blogspot.com/-d9IzquD2MCA/Tx6jiNLHDlI/AAAAAAAAEak/3Lpn5MXPV7c/s400/megauploadcm1.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
Next up, you have to pick one of the three options presented. I went with the Love Thermometer, mainly because it’s called the Love Thermometer and also has a graphic of a baseball bat.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-ZcXuNcOB6dI/Tx6jrNRzUoI/AAAAAAAAEas/AC4nK0Hnmvg/s1600/megauploadcm2.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="365" src="http://1.bp.blogspot.com/-ZcXuNcOB6dI/Tx6jrNRzUoI/AAAAAAAAEas/AC4nK0Hnmvg/s400/megauploadcm2.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
Hitting the Love Thermometer button takes us to a promo located at enterfactory(dot)com, which turns out to be a mobile phone promotion costing various amounts of cash per day until the user unsubscribes.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-BcNziAqZeFU/Tx6j18zEnQI/AAAAAAAAEa0/w6tKLGmLrKw/s1600/megauploadcm3.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="273" src="http://4.bp.blogspot.com/-BcNziAqZeFU/Tx6j18zEnQI/AAAAAAAAEa0/w6tKLGmLrKw/s400/megauploadcm3.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
The adverts served are region specific – the above are what you’ll see if in the Philippines, whereas visiting from the US will result in iPad, Walmart and Visa giftcard offers instead.&lt;br /&gt;
&lt;br /&gt;
Be mindful of what you’re typing into the URL bar, and let me know if you discover what the Love Thermometer actually does…&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-6546778498522977126?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/tEyO7URcaY8" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/6546778498522977126/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2012/01/megaupload-up-again-no.html#comment-form" title="2 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/6546778498522977126?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/6546778498522977126?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/tEyO7URcaY8/megaupload-up-again-no.html" title="Megaupload, up again? no" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-d9IzquD2MCA/Tx6jiNLHDlI/AAAAAAAAEak/3Lpn5MXPV7c/s72-c/megauploadcm1.jpg" height="72" width="72" /><thr:total>2</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2012/01/megaupload-up-again-no.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEMESXYyfSp7ImA9WhRUFE0.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-8574301448226774716</id><published>2012-01-24T15:30:00.000+03:30</published><updated>2012-01-24T15:30:08.895+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-24T15:30:08.895+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Facebook" /><category scheme="http://www.blogger.com/atom/ns#" term="scam" /><category scheme="http://www.blogger.com/atom/ns#" term="spam" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>Facebook Scam: Free Amazon.com gift card promotion</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;br /&gt;
&lt;b&gt;&lt;a href="http://nakedsecurity.sophos.com/2012/01/23/free-amazon-com-gift-card-facebook-scam/" target="_blank"&gt;SophosLabs&lt;/a&gt;:&lt;/b&gt; Gift card scams are a common sight on Facebook, and this weekend it has been the turn of Amazon.com to be the brand used by cybercriminals as a way of making them cash.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-Ck1XiU6KjFo/Tx6byCtNrnI/AAAAAAAAEaE/HuA6SxzWWe8/s1600/amazon-gift-card-1.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="241" src="http://1.bp.blogspot.com/-Ck1XiU6KjFo/Tx6byCtNrnI/AAAAAAAAEaE/HuA6SxzWWe8/s400/amazon-gift-card-1.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;One Free Amazon.com Gift Card (limited time only)&lt;br /&gt;[LINK]&lt;br /&gt;Amazon is currently giving away gift cards to all facebook users. Click here to get one!&lt;/i&gt;&lt;/blockquote&gt;
When you see one of your friends share a link like this with you, the truth is that they have been duped into a scam. Be careful not to make the same mistake as them, or you'll just be helping put cash into the pockets of the bad guys.&lt;br /&gt;
&lt;br /&gt;
If you do click on the link you are taken to a webpage on a third-party website which looks something like this:&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-vZyoUxwmG9U/Tx6cFs_XJQI/AAAAAAAAEaM/kjoEzp7GjC4/s1600/amazon-gift-card-2.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="400" src="http://1.bp.blogspot.com/-vZyoUxwmG9U/Tx6cFs_XJQI/AAAAAAAAEaM/kjoEzp7GjC4/s400/amazon-gift-card-2.jpg" width="382" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
Notice how it encourages you to re-share the link, and add a comment, before it will allow you to access the special deal (in this case, an allegedly free Amazon.com gift card).&lt;br /&gt;
&lt;br /&gt;
If you follow the page's instructions you will be taken to another webpage, in this the example below it encourages you to sign up for a premium rate mobile phone service which could end up hurting you in the pocket.&lt;br /&gt;
&lt;br /&gt;
In addition, the scammers earn affiliate cash by driving traffic to sites like this.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-j16RE5cyuu8/Tx6cXe5Y4yI/AAAAAAAAEaU/6DQmX8UeVlI/s1600/amazon-gift-card-3.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="273" src="http://3.bp.blogspot.com/-j16RE5cyuu8/Tx6cXe5Y4yI/AAAAAAAAEaU/6DQmX8UeVlI/s400/amazon-gift-card-3.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
You have to ask yourself at this point - are you partly to blame?&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-pV90DxABk_A/Tx6crX9gyMI/AAAAAAAAEac/WKdWscu-cP4/s1600/amazon-gift-170.jpg" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/-pV90DxABk_A/Tx6crX9gyMI/AAAAAAAAEac/WKdWscu-cP4/s1600/amazon-gift-170.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;
I mean, yes - in an ideal world - Facebook would have blocked the link from spreading and prevented you from clicking on it. But why did you seriously believe that Amazon.com was going to give you (and presumably the other 800 million people on Facebook) a free gift card?&lt;br /&gt;
&lt;br /&gt;
It's even more implausible when you consider that the image used in the Amazon.com gift card scam messages is for a jaw-dropping $500.&lt;br /&gt;
&lt;br /&gt;
If you're one of the many people who fell for this or similar scams, please check your Facebook page to ensure that you are not spreading any messages to your online friends and ensure that you have revoked any Facebook applications, events and "like"d pages that you are uncomfortable with.&lt;br /&gt;
&lt;br /&gt;
If you use Facebook and want to get an early warning about the latest attacks, you should join the &lt;a href="https://www.facebook.com/omidsblog" target="_blank"&gt;Omid's TechBlog Facebook page&lt;/a&gt;.&lt;br /&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-8574301448226774716?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/GHmeTtFmzPY" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/8574301448226774716/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2012/01/facebook-scam-free-amazoncom-gift-card.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8574301448226774716?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8574301448226774716?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/GHmeTtFmzPY/facebook-scam-free-amazoncom-gift-card.html" title="Facebook Scam: Free Amazon.com gift card promotion" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-Ck1XiU6KjFo/Tx6byCtNrnI/AAAAAAAAEaE/HuA6SxzWWe8/s72-c/amazon-gift-card-1.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2012/01/facebook-scam-free-amazoncom-gift-card.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEcDQHs9cSp7ImA9WhRUFE0.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-8657137669141484490</id><published>2012-01-24T14:17:00.001+03:30</published><updated>2012-01-24T14:17:51.569+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-24T14:17:51.569+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Facebook" /><category scheme="http://www.blogger.com/atom/ns#" term="scam" /><category scheme="http://www.blogger.com/atom/ns#" term="spam" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>More Facebook scam links/videos you want to avoid</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
Recently I'm seeing more facebook scams which claim to be very hot videos, but they are nothing but scam, here is 2 samples:&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-tdpE9qEvipc/Tx6LttBD2tI/AAAAAAAAEZ0/kZEVfHW-CYY/s1600/21sec.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/-tdpE9qEvipc/Tx6LttBD2tI/AAAAAAAAEZ0/kZEVfHW-CYY/s1600/21sec.PNG" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-zwcG6TPlN0k/Tx6LwaWviFI/AAAAAAAAEZ8/aZxNncLzfoU/s1600/kat.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/-zwcG6TPlN0k/Tx6LwaWviFI/AAAAAAAAEZ8/aZxNncLzfoU/s1600/kat.PNG" /&gt;&lt;/a&gt;&lt;/div&gt;
When you see any of them, hover your mouse over the post, and click on the x button in top right which says "Report/Mark Spam".&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-8657137669141484490?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/Y0_IczEHYik" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/8657137669141484490/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2012/01/more-facebook-scam-linksvideos-you-want.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8657137669141484490?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8657137669141484490?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/Y0_IczEHYik/more-facebook-scam-linksvideos-you-want.html" title="More Facebook scam links/videos you want to avoid" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-tdpE9qEvipc/Tx6LttBD2tI/AAAAAAAAEZ0/kZEVfHW-CYY/s72-c/21sec.PNG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2012/01/more-facebook-scam-linksvideos-you-want.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0MHRn0yfSp7ImA9WhRUFE0.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-7742307617447638367</id><published>2012-01-24T14:07:00.000+03:30</published><updated>2012-01-24T14:07:17.395+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-24T14:07:17.395+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="malware" /><category scheme="http://www.blogger.com/atom/ns#" term="Facebook" /><category scheme="http://www.blogger.com/atom/ns#" term="scam" /><category scheme="http://www.blogger.com/atom/ns#" term="report" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>Facebook Scam: See who views your profile!</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;br /&gt;
Earlier today we have seen a new Facebook clickjacking scam which spreads quite fast.&lt;br /&gt;
&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;I KNOW WHEN YOU LOOK AT MY PROFILE USING THIS: http://bit.ly/&amp;lt;removed&amp;gt;&lt;br /&gt;NEW! See who views your profile!&lt;br /&gt;www.&amp;lt;removed&amp;gt;.com&lt;br /&gt;Do you want to know who is looking at your photos right now? Find out who looks at your profile the most and what they look at!&lt;/i&gt;&lt;/blockquote&gt;
&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;br /&gt;
&lt;i&gt;o&lt;/i&gt;r other variant even more provocative:&lt;br /&gt;
&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;CLICK HERE TO SEE WHO IS STALKING YOU: http://bit.ly&amp;lt;removed&amp;gt;&lt;br /&gt;NEW! See who views your profile!&lt;br /&gt;www.&amp;lt;removed&amp;gt;.com&lt;br /&gt;Do you want to know who is looking at your photos right now? Find out who looks at your profile the most and what they look at!&lt;/i&gt;&lt;/blockquote&gt;
&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;br /&gt;
&lt;i&gt;&amp;nbsp;&lt;/i&gt;Continue reading at Avira's TechBlog:&lt;i&gt;&amp;nbsp;&lt;/i&gt;&lt;a href="http://techblog.avira.com/2012/01/23/new-facebook-clickjacking-scam-which-promises-to-show-you-who-has-seen-your-profile/en/"&gt;http://techblog.avira.com/2012/01/23/new-facebook-clickjacking-scam-which-promises-to-show-you-who-has-seen-your-profile/en/&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
Best action you can take is avoid clicking on the link and also report the post by hover the mouse over it and click on "x" that you see top right of the post says "Report/Mark Spam"&lt;br /&gt;
&lt;br /&gt;
Don't forget There are NO way to see who views your profile.&lt;br /&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-7742307617447638367?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/nxH2M3dP3T4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/7742307617447638367/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2012/01/facebook-scam-see-who-views-your.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/7742307617447638367?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/7742307617447638367?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/nxH2M3dP3T4/facebook-scam-see-who-views-your.html" title="Facebook Scam: See who views your profile!" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2012/01/facebook-scam-see-who-views-your.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUMEQ3c-cSp7ImA9WhRVF0Q.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-5028144760381849783</id><published>2012-01-17T13:13:00.000+03:30</published><updated>2012-01-17T13:13:22.959+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-17T13:13:22.959+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Dropbox" /><category scheme="http://www.blogger.com/atom/ns#" term="link" /><category scheme="http://www.blogger.com/atom/ns#" term="report" /><title>LA Time: Dropbox inventor determined to build the next Apple or Google</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;br /&gt;
Drew Houston's wildly popular service allows people to access the latest version of all their digital stuff on any device no matter where they are. Every day 325 million files are saved on Dropbox.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-ciy9klpyk90/TxVBf3iT8ZI/AAAAAAAAEZo/GJhx8V8gOLU/s1600/Db-own.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="288" src="http://4.bp.blogspot.com/-ciy9klpyk90/TxVBf3iT8ZI/AAAAAAAAEZo/GJhx8V8gOLU/s400/Db-own.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
Drew Houston, 28, chief executive and co-founder of Dropbox, last fall pocketed $250 million from seven of Silicon Valley's top venture capital firms. That eye-popping sum pegged the value of his company at $4 billion and his own net worth — at least on paper — at an estimated $600 million. (Matt Staver, Bloomberg / July 6, 2011)&lt;br /&gt;
&lt;br /&gt;
Read the full store here in LA Times:&amp;nbsp;&lt;a href="http://www.latimes.com/business/la-fi-dropbox-20120115,0,6541893.story"&gt;http://www.latimes.com/business/la-fi-dropbox-20120115,0,6541893.story&lt;/a&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-5028144760381849783?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/mTzHFGBdlVY" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/5028144760381849783/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2012/01/la-time-dropbox-inventor-determined-to.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/5028144760381849783?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/5028144760381849783?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/mTzHFGBdlVY/la-time-dropbox-inventor-determined-to.html" title="LA Time: Dropbox inventor determined to build the next Apple or Google" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-ciy9klpyk90/TxVBf3iT8ZI/AAAAAAAAEZo/GJhx8V8gOLU/s72-c/Db-own.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2012/01/la-time-dropbox-inventor-determined-to.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkcDQns5fCp7ImA9WhRVFUk.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-2551401157560892008</id><published>2012-01-14T13:47:00.000+03:30</published><updated>2012-01-14T14:51:13.524+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-14T14:51:13.524+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="phishing" /><category scheme="http://www.blogger.com/atom/ns#" term="Hotmail" /><category scheme="http://www.blogger.com/atom/ns#" term="Windows Live" /><category scheme="http://www.blogger.com/atom/ns#" term="scam" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>Hotmail phishing: Don't send us the wrong password or we'll suspend your account!</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-Cc6WHxrxHpw/TxFVbqit4mI/AAAAAAAAEZY/0j0bomo5w94/s1600/hotmail-170.jpg" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/-Cc6WHxrxHpw/TxFVbqit4mI/AAAAAAAAEZY/0j0bomo5w94/s1600/hotmail-170.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;b&gt;&lt;a href="http://nakedsecurity.sophos.com/" target="_blank"&gt;SophosLabs:&lt;/a&gt;&lt;/b&gt; Have you been told to verify your Hotmail account? Did you receive a message saying that Hotmail's email servers were congested, and so they were removing all unused accounts?&lt;br /&gt;
&lt;br /&gt;
If so, I hope you responded to the email with a roll of the eyes and a quick stab of the delete button. Because if you didn't, you might have been at risk of having your login credentials stolen.&lt;br /&gt;
&lt;br /&gt;
Thanks to the reader, who forwarded us the following phishing email that he and others received, posing as communication from Hotmail:&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-xzB5_-ecJsw/TxFVBbteP0I/AAAAAAAAEZQ/ybgCQYY8jm4/s1600/hotmail-verification.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/-xzB5_-ecJsw/TxFVBbteP0I/AAAAAAAAEZQ/ybgCQYY8jm4/s1600/hotmail-verification.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Part of the email reads:&lt;br /&gt;
&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;We are upgrading our database to serve you better. Due to the congestion in our E-mail servers there would be removal of all unused Hotmail Account. You will have to confirm if your E-mail account is still active by filling out your information below after clicking the reply button&lt;/i&gt;&lt;/blockquote&gt;
&lt;br /&gt;
The email then requests that you reply with your Hotmail username, password, date of birth and country. Of course, doing so puts vital information right into the hands of the cybercriminals.&lt;br /&gt;
&lt;br /&gt;
It looks like the bad guys have had some problems in the past though, with victims handing over incorrect information (how typical!):&lt;br /&gt;
&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;Ensure every detail requested above is provided correctly upon receipt of this notification to enable the upgrade. Incomplete details and wrong passwords forwarded will result in suspension or closure of your account for security reasons.&lt;/i&gt;&lt;/blockquote&gt;
&lt;br /&gt;
The fact is, of course, that the email isn't from Hotmail, and they would never ask you for your password. Although a simple phishing scam like this can be obvious to those of us who work in the field of computer security, there are plenty of less-savvy people out there who might be fooled into responding - and hand over the keys to their account.&lt;br /&gt;
&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-2551401157560892008?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/jDpvKMA7jBg" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/2551401157560892008/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2012/01/hotmail-phishing-dont-send-us-wrong.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2551401157560892008?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2551401157560892008?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/jDpvKMA7jBg/hotmail-phishing-dont-send-us-wrong.html" title="Hotmail phishing: Don't send us the wrong password or we'll suspend your account!" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-Cc6WHxrxHpw/TxFVbqit4mI/AAAAAAAAEZY/0j0bomo5w94/s72-c/hotmail-170.jpg" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2012/01/hotmail-phishing-dont-send-us-wrong.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkEHQnk7fyp7ImA9WhRVE00.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-1973049808291340340</id><published>2012-01-11T22:33:00.001+03:30</published><updated>2012-01-11T22:33:53.707+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-11T22:33:53.707+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="social networking" /><category scheme="http://www.blogger.com/atom/ns#" term="Facebook" /><category scheme="http://www.blogger.com/atom/ns#" term="scam" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>Pink Facebook? Red or black Facebook?</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;br /&gt;
Pink Facebook? Red or black Facebook?&lt;br /&gt;
&lt;br /&gt;
No, it's a scam you want to avoid. Share the knowledge with your friends!&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-RQTNIfTCrgg/Tw3cpYCiNjI/AAAAAAAAEZE/_IrIF3-nhB0/s1600/399634_10150513387932427_193107142426_8698132_173738768_n.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="187" src="http://3.bp.blogspot.com/-RQTNIfTCrgg/Tw3cpYCiNjI/AAAAAAAAEZE/_IrIF3-nhB0/s400/399634_10150513387932427_193107142426_8698132_173738768_n.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
Credit to &lt;a href="https://www.facebook.com/NormanASA" target="_blank"&gt;Norman Security&lt;/a&gt; for sharing :-)&lt;br /&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-1973049808291340340?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/FwWvYAJe1aE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/1973049808291340340/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2012/01/pink-facebook-red-or-black-facebook.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/1973049808291340340?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/1973049808291340340?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/FwWvYAJe1aE/pink-facebook-red-or-black-facebook.html" title="Pink Facebook? Red or black Facebook?" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-RQTNIfTCrgg/Tw3cpYCiNjI/AAAAAAAAEZE/_IrIF3-nhB0/s72-c/399634_10150513387932427_193107142426_8698132_173738768_n.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2012/01/pink-facebook-red-or-black-facebook.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkcHQH4_fip7ImA9WhRVEEk.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-5315736916513112835</id><published>2012-01-08T22:10:00.001+03:30</published><updated>2012-01-08T22:10:31.046+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-08T22:10:31.046+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Google" /><category scheme="http://www.blogger.com/atom/ns#" term="Updates" /><category scheme="http://www.blogger.com/atom/ns#" term="Browser" /><category scheme="http://www.blogger.com/atom/ns#" term="Google Chrome" /><title>Chrome 17 enters beta, improves speed and security</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-pUE4XhKMyXM/Twnig4IFrtI/AAAAAAAAEY0/9ULf2RnoNNs/s1600/new-chrome-logo.png" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://2.bp.blogspot.com/-pUE4XhKMyXM/Twnig4IFrtI/AAAAAAAAEY0/9ULf2RnoNNs/s1600/new-chrome-logo.png" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;a href="http://www.h-online.com/security" target="_blank"&gt;&lt;b&gt;H-Security&lt;/b&gt;&lt;/a&gt;: Version&amp;nbsp;17 of &lt;a href="https://www.google.com/chrome/" rel="external" target="_blank"&gt;Chrome&lt;/a&gt; has been &lt;a href="http://googlechromereleases.blogspot.com/2012/01/beta-channel-update.html" rel="external" target="_blank"&gt;released&lt;/a&gt; into the WebKit-based browser's &lt;a href="http://www.google.com/landing/chrome/beta/" rel="external" target="_blank"&gt;Beta&lt;/a&gt; channel. Its developers say that the new Chrome beta, version 17.0.963.26, is focused on improving two of the browser's &lt;a href="https://www.google.com/chrome/intl/en/more/index.html" rel="external" target="_blank"&gt;core principles&lt;/a&gt;: speed and security.&lt;br /&gt;
&lt;br /&gt;
To make Chrome "go even faster", some web pages will start loading in
 the background before a user has even finished typing a URL into the &lt;a href="http://support.google.com/chrome/bin/answer.py?hl=en&amp;amp;answer=95440" rel="external" target="_blank"&gt;Omnibox&lt;/a&gt;
 address and search bar. To reduce the time between a user pressing 
enter and the page being fully loaded, Chrome will pre-render some pages
 if the URL auto-completes to a site a user is likely to visit. 
According to Google Software Engineer Dominic Hamon, this will, in some 
cases, cause pages to appear "instantly".&lt;br /&gt;
&lt;br /&gt;
With version&amp;nbsp;17, Chrome's &lt;a href="http://www.google.com/chrome/intl/en/more/security.html" rel="external" target="_blank"&gt;Safe Browsing&lt;/a&gt;
 technology has been extended to protect against malicious downloads by 
analysing executable files, including Windows .exe and .msi files. So, 
if a user visits a web site and is tricked into downloading, for 
example, a fake anti-virus product, Chrome will issue a warning if the 
file appears to be malicious and will advise the user to discard it. 
Further details about Chrome 17.0.963.26, which is available to &lt;a href="http://dev.chromium.org/getting-involved/dev-channel#TOC-Subscribing-to-a-channel" rel="external" target="_blank"&gt;download&lt;/a&gt; from dev.chromium.org, can be found in a &lt;a href="http://chrome.blogspot.com/2012/01/speed-and-security.html" rel="external" target="_blank"&gt;post&lt;/a&gt; on the Google Chrome Blog.&lt;br /&gt;
&lt;br /&gt;
The Chrome Team at Google has also updated the browser's Stable channel to version &lt;a href="http://googlechromereleases.blogspot.com/2012/01/stable-channel-update.html" rel="external" target="_blank"&gt;16.0.912.75&lt;/a&gt;, closing three &lt;a href="https://sites.google.com/a/chromium.org/dev/developers/severity-guidelines" rel="external" target="_blank"&gt;high risk&lt;/a&gt;
 security holes. These include a use-after-free in animation frames, a 
heap-buffer-overflow in the libxml software library, and a 
stack-buffer-overflow in glyph handling.&lt;br /&gt;
&lt;br /&gt;
As part of its Chromium Security Rewards programme, Google paid 
security researchers a total of $2,000 for discovering and reporting the
 holes. As usual, further details of the vulnerabilities are being 
withheld until "a majority of users are up-to-date with the fix". Chrome
 16.0.912.75 is available to download from &lt;a href="http://www.google.com/chrome" rel="external" target="_blank"&gt;google.com/chrome&lt;/a&gt;; alternatively, users who currently have Chrome installed can use the &lt;a href="http://support.google.com/chrome/bin/answer.py?hl=en&amp;amp;answer=95414" rel="external" target="_blank"&gt;built-in update function&lt;/a&gt;.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-5315736916513112835?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/mdxzaMetPvM" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/5315736916513112835/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2012/01/chrome-17-enters-beta-improves-speed.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/5315736916513112835?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/5315736916513112835?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/mdxzaMetPvM/chrome-17-enters-beta-improves-speed.html" title="Chrome 17 enters beta, improves speed and security" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-pUE4XhKMyXM/Twnig4IFrtI/AAAAAAAAEY0/9ULf2RnoNNs/s72-c/new-chrome-logo.png" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2012/01/chrome-17-enters-beta-improves-speed.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Ak8EQX05eCp7ImA9WhRXEUk.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-8831183230357755677</id><published>2011-12-17T22:36:00.000+03:30</published><updated>2011-12-17T22:36:40.320+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-17T22:36:40.320+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="news" /><category scheme="http://www.blogger.com/atom/ns#" term="Internet Explorer" /><category scheme="http://www.blogger.com/atom/ns#" term="Updates" /><category scheme="http://www.blogger.com/atom/ns#" term="Microsoft" /><category scheme="http://www.blogger.com/atom/ns#" term="Browser" /><title>Internet Explorer to upgrade automatically, unless you say no</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-Vg5Kk6KgVx4/Tuzm3rkWi5I/AAAAAAAAEWY/OQaRp2-us7o/s1600/internetexplorer9logo.png" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" height="200" src="http://2.bp.blogspot.com/-Vg5Kk6KgVx4/Tuzm3rkWi5I/AAAAAAAAEWY/OQaRp2-us7o/s200/internetexplorer9logo.png" width="200" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;a href="http://nakedsecurity.sophos.com/" target="_blank"&gt;SophosLabs:&lt;/a&gt; Microsoft's Ryan Gavin &lt;a href="http://windowsteamblog.com/ie/b/ie/archive/2011/12/15/ie-to-start-automatic-upgrades-across-windows-xp-windows-vista-and-windows-7.aspx"&gt;announced&lt;/a&gt; a new strategy to keep the web safe... Keep your Internet Explorer up to date.&lt;br /&gt;
&lt;br /&gt;
It is great news for Windows users who don't appreciate the importance of staying up to date.&lt;br /&gt;
&lt;br /&gt;
Microsoft has been struggling with browser stragglers for years. They even ran their own campaign comparing &lt;a href="http://blog.seattlepi.com/microsoft/2010/05/17/microsoft-likens-ie6-to-old-spoiled-milk/"&gt;IE 6 to spoiled milk&lt;/a&gt; including&amp;nbsp;shameful infopr0n.&lt;br /&gt;
&lt;br /&gt;
Old versions of IE leave a considerable number of users vulnerable to old exploits, or in their parlance easy targets.&lt;br /&gt;
&lt;br /&gt;
If Microsoft updates everyone's browser how will companies like Google have their "Aurora" moments?&lt;br /&gt;
&lt;br /&gt;
While bringing everyone up to Internet Explorer 9 is a great initiative, and doing so automatically will help things along, there are still some big issues ahead for Microsoft.&lt;br /&gt;
&lt;br /&gt;
Their new policy seems to rest somewhere between Google Chrome's "You don't know it but you just upgraded major versions" and Mozilla Firefox's "You know that our weekly major revision is available, would you like it now? Would ya? Please?"&lt;br /&gt;
&lt;br /&gt;
This could be a big problem for some enterprises that followed Microsoft's advice 10 years ago and adopted a fully-integrated, Active-X, .aspx, optimized for Internet Explorer 6 (or 7!) internal web application.&lt;br /&gt;
&lt;br /&gt;
Most organizations that use Internet Explorer are stuck on older versions because of IE-only proprietary code, and the fact that you can only have one version of Internet Explorer installed at the same time.&lt;br /&gt;
&lt;br /&gt;
It only takes one application. Which is why Microsoft introduced the Internet Explorer &lt;a href="http://www.microsoft.com/download/en/details.aspx?displaylang=en&amp;amp;id=14149"&gt;8&lt;/a&gt; and &lt;a href="http://www.microsoft.com/download/en/details.aspx?displaylang=en&amp;amp;id=179"&gt;9&lt;/a&gt; upgrade blocker. This allows you to stay as stale as Internet Explorer 7 if you wish.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-8ISItcFEAHc/Tuzm71PchhI/AAAAAAAAEWg/tAhLavk38so/s1600/html5_logo_256.png" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://2.bp.blogspot.com/-8ISItcFEAHc/Tuzm71PchhI/AAAAAAAAEWg/tAhLavk38so/s1600/html5_logo_256.png" /&gt;&lt;/a&gt;&lt;/div&gt;
Australians and Brazil will be the first to see the automatic upgrades in action, and users who have already said no to IE 8 or 9 will remain at their current version.&lt;br /&gt;
&lt;br /&gt;
Good news for web developers, good news for security and most of all a demonstration of why open standards are such a good idea.&lt;br /&gt;
&lt;br /&gt;
We could all be running Chrome 36 if it wasn't for that darned Active-X control for Accounting...&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-8831183230357755677?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/1XnhlMIQ5Zk" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/8831183230357755677/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/12/internet-explorer-to-upgrade.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8831183230357755677?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8831183230357755677?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/1XnhlMIQ5Zk/internet-explorer-to-upgrade.html" title="Internet Explorer to upgrade automatically, unless you say no" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-Vg5Kk6KgVx4/Tuzm3rkWi5I/AAAAAAAAEWY/OQaRp2-us7o/s72-c/internetexplorer9logo.png" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/12/internet-explorer-to-upgrade.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUYMSXY7eip7ImA9WhRXEUk.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-7692933017996995526</id><published>2011-12-17T22:09:00.002+03:30</published><updated>2011-12-17T22:09:48.802+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-17T22:09:48.802+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Vulnerability" /><category scheme="http://www.blogger.com/atom/ns#" term="Adobe" /><category scheme="http://www.blogger.com/atom/ns#" term="Updates" /><category scheme="http://www.blogger.com/atom/ns#" term="review" /><category scheme="http://www.blogger.com/atom/ns#" term="report" /><title>Adobe closes Acrobat and Reader security holes</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-XpllBUvjElA/TuzhGgTYqOI/AAAAAAAAEWQ/6-eeLKvIM40/s1600/adobe+reader.jpg" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" height="200" src="http://1.bp.blogspot.com/-XpllBUvjElA/TuzhGgTYqOI/AAAAAAAAEWQ/6-eeLKvIM40/s200/adobe+reader.jpg" width="200" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;a href="http://www.h-online.com/" target="_blank"&gt;The H-Online:&lt;/a&gt; The first patches for the zero-day flaw in Adobe's Acrobat and Reader applications, which the company confirmed was being exploited in the wild, have been &lt;a href="http://www.adobe.com/support/security/bulletins/apsb11-30.html"&gt;released&lt;/a&gt;. The initial problem was caused by a memory corruption when processing Universal 3D (U3D) files, which could allow attackers to potentially take control of an affected system. The patches released also address a newly revealed critical flaw (CVE-2011-4369) which can cause memory corruption when processing Product Representation Compact (PRC) 3D files.&lt;br /&gt;&lt;br /&gt;Adobe has now released updates for Adobe Reader 9.x for Windows and Acrobat 9.x for Windows. The updates can be installed by selecting Help ➤Check for Updates in either application. Manual downloads for &lt;a href="http://www.adobe.com/support/downloads/detail.jsp?ftpID=5319"&gt;Reader 9.4.7&lt;/a&gt; and&amp;nbsp;&lt;a href="http://www.adobe.com/support/downloads/detail.jsp?ftpID=5320"&gt;Acrobat 9.4.7&lt;/a&gt; are also available. Adobe is not releasing updates for Reader X or Acrobat X at this time because it says the defensive technologies added to those products stops any exploitation of the flaws. It will be releasing fixed versions of those applications as part of the next quarterly security update on 10 January 2012, along with updates for the Unix and Mac OS X versions.&lt;br /&gt;&lt;br /&gt;Adobe suggests that users of Reader and Acrobat X should verify the defensive mechanisms are enabled. In Acrobat X a user should go to Edit ➤ Preferences➤ Security (Enhanced) and make sure that "Enable Enhanced Security" is checked along with either "Files from potentially unsafe locations" or "All files". Adobe Reader X users should go to Edit ➤ Preferences ➤ General and ensure that "Enable Protected Mode at startup" is checked.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-7692933017996995526?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/bVkcg8b2o50" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/7692933017996995526/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/12/adobe-closes-acrobat-and-reader.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/7692933017996995526?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/7692933017996995526?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/bVkcg8b2o50/adobe-closes-acrobat-and-reader.html" title="Adobe closes Acrobat and Reader security holes" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-XpllBUvjElA/TuzhGgTYqOI/AAAAAAAAEWQ/6-eeLKvIM40/s72-c/adobe+reader.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/12/adobe-closes-acrobat-and-reader.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0EHQXw5fip7ImA9WhRXEUk.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-2342500337825453660</id><published>2011-12-17T21:41:00.000+03:30</published><updated>2011-12-17T21:43:50.226+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-17T21:43:50.226+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="visa" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="review" /><title>Visa looks into Eastern European security breach</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/--mLrPg7ykgg/TuzZoYu_FuI/AAAAAAAAEV4/z15bKOp0pXg/s1600/visa-170.jpg" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/--mLrPg7ykgg/TuzZoYu_FuI/AAAAAAAAEV4/z15bKOp0pXg/s1600/visa-170.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;a href="http://nakedsecurity.sophos.com/" target="_blank"&gt;SophosLabs:&lt;/a&gt; Visa is investigating a potential security breach that may have compromised payment cards of Eastern Europeans.&lt;br /&gt;
&lt;br /&gt;
Although Visa hasn't disclosed which countries were hit, the Romanian state-owned CEC Bank has blocked and reissued 17,000 cards on suspicion that they had been compromised.&lt;br /&gt;
&lt;br /&gt;
CEC Bank said in a statement that "a number" of cards issued by banks both in Romania and abroad might have been compromised via an international database.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-5mTT9jPRSis/TuzZ3zL_J-I/AAAAAAAAEWA/GdMmunrRMV0/s1600/cec-statement.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/-5mTT9jPRSis/TuzZ3zL_J-I/AAAAAAAAEWA/GdMmunrRMV0/s1600/cec-statement.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
Here's an excerpt from &lt;a href="https://www.cec.ro/3577/section.aspx/2957" target="_blank"&gt;the statement&lt;/a&gt;, translated into English from Romanian by &lt;a href="http://www.v3.co.uk/v3-uk/news/2133413/visa-investigates-european-card-breach" target="_blank"&gt;v3.co.uk&lt;/a&gt;:&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;The bank has been informed that a number of cards issued by banks in Romania and abroad have been potentially compromised through an international database. CEC Bank has decided to block the cards and reissue a new card and PIN, at no cost, for a number of cards in its portfolio&lt;/i&gt;&amp;nbsp;&lt;/blockquote&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;This attack did not target CEC Bank's cards alone and was not due to any bank vulnerability. Our clients' money is safe.&lt;/i&gt;&lt;/blockquote&gt;
Visa pinned the problem on a European payment processor and issued this statement:&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;Visa Europe has been informed of a potential data security breach at a European processor and an investigation is underway. We are working closely with our member banks to ensure cardholders are protected.&lt;/i&gt;&lt;/blockquote&gt;
In his report on this incident, v3's Phil Muncaster pointed to a warning earlier this month from Trend Micro regarding a &lt;a href="http://www.v3.co.uk/v3-uk/news/2129718/trend-micro-warns-verified-visa-3ds-password-reset-flaw" target="_blank"&gt;basic design flaw&lt;/a&gt; in some implementations of the 3D Secure protocol - aka "Verified by Visa" and "MasterCard SecureCode" - that could allow crooks to conduct ID fraud on some Visa cards.&lt;br /&gt;
&lt;br /&gt;
The potential security hole in 3DS is a result in a weakness in the password reset process of some system versions, Trend Micro's Rik Ferguson explained the flaw on his &lt;a href="http://countermeasures.trendmicro.eu/verified-by-visa/" target="_blank"&gt;CounterMeasures blog&lt;/a&gt;:&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;If you are making a purchase through a merchant that is subscribed to the program, you will be redirected, during the payment phase, to a 3DS verification page. On this page you confirm the details of the transaction, enter your password and hey presto, the transaction is complete. So far so good, the merchant never sees my password, no transaction with that merchant can be completed without it and I’m protected, but...&lt;/i&gt;&lt;/blockquote&gt;
He then goes on to describe the password reset link, finding that three of four pieces of information used to verify identity - cardholder name, expiration date and signature panel code - are all contained in the card itself, either embossed or printed and contained in the magnetic stripe data.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-Q7RC7F2Yec4/TuzaidT11WI/AAAAAAAAEWI/BwB1MVbwKX4/s1600/verified-visa-password-reminder.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://2.bp.blogspot.com/-Q7RC7F2Yec4/TuzaidT11WI/AAAAAAAAEWI/BwB1MVbwKX4/s1600/verified-visa-password-reminder.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
The fourth piece of information, cardholder date of birth, would be drop-dead easy to track down, he says:&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;Trouble is, it’s information that is not only widely shared on social networks, surveys, sign-up forms and a myriad of other places, but also freely available in public records. We cannot and should not consider our date of birth to be a secret.&lt;/i&gt;&lt;/blockquote&gt;
The Eastern Europe breach and the 3DS flaw are spelling one headache-y month for Visa so far. Yikes, now all the company needs is for the EU to contemplate carving away at its profits with big fines for privacy breaches or something like that.&lt;br /&gt;
&lt;br /&gt;
But wait, that's exactly what the &lt;a href="http://www.ft.com/intl/cms/s/2/bf962998-1d01-11e1-a26a-00144feabdc0.html#axzz1fbMYiUzk" target="_blank"&gt;EU is mulling!&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
The way the Financial Times reads it, the proposed rule, slated to be introduced in January, will impact social media most sharply, serving as a significant tool to boost the EU's powers when it comes to combating data protection breaches.&lt;br /&gt;
&lt;br /&gt;
But it will be interesting to see what happens (if in fact the rule doesn't get watered down to pointlessness, that is) in cases such as credit card payment breaches like the one Visa is now investigating, if it turns out that Visa or its payment processor was treating customer data with anything less than kid gloves.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-2342500337825453660?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/muiLvLPiKOE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/2342500337825453660/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/12/visa-looks-into-eastern-european.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2342500337825453660?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2342500337825453660?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/muiLvLPiKOE/visa-looks-into-eastern-european.html" title="Visa looks into Eastern European security breach" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/--mLrPg7ykgg/TuzZoYu_FuI/AAAAAAAAEV4/z15bKOp0pXg/s72-c/visa-170.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/12/visa-looks-into-eastern-european.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Dk4DR309eyp7ImA9WhRQFE4.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-8465797178310760257</id><published>2011-12-09T15:53:00.001+03:30</published><updated>2011-12-09T16:19:36.363+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-09T16:19:36.363+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="This Blog Update" /><title>Come join my forum</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
Hi Folks!&lt;br /&gt;
&lt;br /&gt;
I would like to invite you to join my forum, its a small forum for now but by the time it will get better, a link to my forum is available in in my &lt;a href="http://techblog.omidfarhang.com/" target="_blank"&gt;TechBlog&lt;/a&gt;, &lt;a href="http://blog.omidfarhang.com/" target="_blank"&gt;LifeBlog&lt;/a&gt; or in &lt;a href="http://www.omidfarhang.com/" target="_blank"&gt;my site&lt;/a&gt;, feel free to join and express yourself in whatever you like, feel free to post whatever you like except&amp;nbsp;advertisement, Thanks! :-)&lt;br /&gt;
&lt;br /&gt;
&lt;div style="text-align: center;"&gt;
&lt;a href="http://forum.omidfarhang.com/"&gt;&lt;b&gt;&lt;span class="Apple-style-span" style="font-size: large;"&gt;forum.omidfarhang.com&lt;/span&gt;&lt;/b&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
Thank you for joining in advance&lt;br /&gt;
-Omid&lt;br /&gt;
&lt;br /&gt;
&lt;i&gt;Also posted in &lt;a href="http://blog.omidfarhang.com/" target="_blank"&gt;Omid's LifeBlog&lt;/a&gt;&lt;/i&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-8465797178310760257?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/lMAMYtAQ_6s" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/8465797178310760257/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/12/come-join-my-forum.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8465797178310760257?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8465797178310760257?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/lMAMYtAQ_6s/come-join-my-forum.html" title="Come join my forum" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><thr:total>0</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/12/come-join-my-forum.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkMFR3c7fip7ImA9WhRSFk4.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-2092406300544655562</id><published>2011-11-18T19:53:00.001+03:30</published><updated>2011-11-18T20:10:16.906+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-18T20:10:16.906+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="malware" /><category scheme="http://www.blogger.com/atom/ns#" term="Facebook" /><category scheme="http://www.blogger.com/atom/ns#" term="advice" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>Keep your Facebook friends close and your antivirus closer</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;b&gt;&lt;a href="http://blogs.technet.com/b/mmpc/archive/2011/11/17/keep-your-facebook-friends-close-and-your-antivirus-closer.aspx" target="_blank"&gt;Microsoft Malware Protection Center&lt;/a&gt;:&lt;/b&gt; Facebook malware attacks are not new. Scams spreading via status updates
 have been around for a long time, but in recent weeks one threat has 
been getting creative in terms of social engineering. &lt;a href="http://www.microsoft.com/security/portal/Threat/Encyclopedia/Entry.aspx?Name=Backdoor:Win32/Caphaw.A" target="_blank"&gt;Backdoor:Win32/Caphaw.A&lt;/a&gt;
 can intercept URL requests in both Firefox and Internet Explorer and it
 has been observed to post very personable updates on friends' walls in 
Facebook, gaining access if the user is logged in.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-YfzOZqAMMmk/TsaJWaskTWI/AAAAAAAAETk/Kj6BPI1_8ro/s1600/BID056-FB-Backdoor-001.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="78" src="http://4.bp.blogspot.com/-YfzOZqAMMmk/TsaJWaskTWI/AAAAAAAAETk/Kj6BPI1_8ro/s400/BID056-FB-Backdoor-001.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
The message links to a video posted on a Youtube-like website, which 
suggests that the user update the browser with a bogus ActiveX object. 
The malware's authors also went one step further in making sure the 
video landing page looks as legitimate as possible:&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-x5uc2rKCnQc/TsaJlkVwMcI/AAAAAAAAETs/2Ik6EXnBlwM/s1600/BID056-FB-Backdoor-002.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="77" src="http://2.bp.blogspot.com/-x5uc2rKCnQc/TsaJlkVwMcI/AAAAAAAAETs/2Ik6EXnBlwM/s400/BID056-FB-Backdoor-002.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
This download is actually Backdoor:Win32/Caphaw.A, a sophisticated 
firewall-bypassing backdoor armed with almost everything. It installs an
 FTP server, a proxy server, and a keylogger on the computer. It also 
has built-in remote desktop functionality based on the open source VNC 
project. We received a report that a user found this in his computer and
 also discovered that money had been transferred from his bank account 
by an unknown party. The keylogging component, coupled with the remote 
desktop functionality, makes it entirely possible for this to have 
happened.&lt;br /&gt;
&lt;br /&gt;
The backdoor "calls home" to domains such as 
commonworld[removed].cc or web[removed]es.cc to get the data
 that it posts on the friends' Facebook walls. Its main module, in the 
meantime, is hosted on [removed]youtube.com.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-0EbT7SK4vo4/TsaJo54aoCI/AAAAAAAAET0/TwXEMshDPnw/s1600/BID056-FB-Backdoor-003.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="70" src="http://2.bp.blogspot.com/-0EbT7SK4vo4/TsaJo54aoCI/AAAAAAAAET0/TwXEMshDPnw/s400/BID056-FB-Backdoor-003.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
The good thing to do when spotting such fishy wall posts is to warn 
your friends whose accounts have been compromised. You can mark the 
message as spam to help prevent others from downloading the backdoor; 
Facebook is quite diligent about filtering these posts once they have 
been reported.&lt;br /&gt;
&lt;br /&gt;
The presence of this threat on your computer threatens your whole 
online identity, so we recommend that you change the passwords to all of
 your sensitive accounts – email, online shopping, and online banking, 
for example. And while you're at it, remind your affected friends to 
change their Facebook passwords, too.&lt;br /&gt;
&lt;br /&gt;
Finally, scan your machine with an
 up-to-date antivirus solution to remove this malware from your 
computer.&lt;br /&gt;
Here are some SHA1s of files detected by our products as &lt;a href="http://www.microsoft.com/security/portal/Threat/Encyclopedia/Entry.aspx?Name=Backdoor:Win32/Caphaw.A" target="_blank"&gt;Backdoor:Win32/Caphaw.A&lt;/a&gt;:&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;c10ad13419ea44ba85cd8e83e2cd7ac8313e91de&lt;/li&gt;
&lt;li&gt;54d9f40156cc4a2561252f8ad30b4afdcc5e93b4&lt;/li&gt;
&lt;li&gt;ebbd8790eab8a9822a80c2afaa575a4b2c2f3b55&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-2092406300544655562?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/MWgWFUxZQMs" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/2092406300544655562/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/11/keep-your-facebook-friends-close-and.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2092406300544655562?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2092406300544655562?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/MWgWFUxZQMs/keep-your-facebook-friends-close-and.html" title="Keep your Facebook friends close and your antivirus closer" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-YfzOZqAMMmk/TsaJWaskTWI/AAAAAAAAETk/Kj6BPI1_8ro/s72-c/BID056-FB-Backdoor-001.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/11/keep-your-facebook-friends-close-and.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C08CSXc_eCp7ImA9WhRSFUk.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-2879200676501301271</id><published>2011-11-17T17:30:00.001+03:30</published><updated>2011-11-17T18:27:48.940+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-17T18:27:48.940+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Mozilla" /><category scheme="http://www.blogger.com/atom/ns#" term="news" /><category scheme="http://www.blogger.com/atom/ns#" term="internet" /><category scheme="http://www.blogger.com/atom/ns#" term="Google" /><category scheme="http://www.blogger.com/atom/ns#" term="events" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>Stop Censorship: Help us stop the Internet Blacklist Legislation</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://americancensorship.org/" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="30" src="http://4.bp.blogspot.com/-c4TcM-S6WV4/TsUevdSzLsI/AAAAAAAAETU/7SesLHkQSsA/s400/headertitle.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;h1&gt;



Protect the Internet&lt;/h1&gt;
&lt;h2&gt;






Help us stop the Internet Blacklist Legislation&lt;/h2&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://www.mozilla.org/sopa/" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" height="182" src="http://3.bp.blogspot.com/-FWq7TEhksVE/TsUfrHYCZII/AAAAAAAAETc/QYiND_bCdaI/s320/stop-censorship-small.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
Mozilla: On &lt;b&gt;November 16&lt;sup&gt;th&lt;/sup&gt;&lt;/b&gt;, Congress holds hearings on 
the first American Internet censorship system. This bill can pass. If it
 does, the Internet and free speech will never be the same.&lt;br /&gt;
Join us to stop this bill.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;section class="fullwidth"&gt;
    &lt;ul&gt;
&lt;li&gt;
        &lt;h3&gt;






Why?&lt;/h3&gt;
A few infringing links are enough to justify censoring an entire site, blocking good content along with the bad.
      &lt;/li&gt;
&lt;li&gt;
        &lt;h3&gt;






How?&lt;/h3&gt;
The US will be able to block a site’s web traffic, ad traffic 
and search traffic using the same website censorship methods used by 
China, Iran and Syria.
      &lt;/li&gt;
&lt;li&gt;
        &lt;h3&gt;






Who's at risk?&lt;/h3&gt;
Your favorite websites both inside and outside the US could be blocked based on an infringement claim.
      &lt;/li&gt;
&lt;li&gt;
        &lt;h3&gt;






Could this pass?&lt;/h3&gt;
Yes. The Stop Online Piracy Act and the PROTECT IP Act have widespread support in Congress and are expected to pass.&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;div style="text-align: center;"&gt;
&amp;nbsp;&lt;span style="font-size: x-large;"&gt;&lt;b&gt;&lt;a href="http://americancensorship.org/" target="_blank"&gt;http://americancensorship.org/&lt;/a&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;
&lt;ul style="text-align: left;"&gt;
&lt;li&gt;&lt;a href="https://wfc2.wiredforchange.com/o/9042/p/dia/action/public/?action_KEY=8173" target="_blank"&gt;https://wfc2.wiredforchange.com/o/9042/p/dia/action/public/?action_KEY=8173&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;section class="fullwidth"&gt;&lt;a href="http://www.mozilla.org/sopa/" target="_blank"&gt;http://www.mozilla.org/sopa/&lt;/a&gt;&lt;/section&gt;&lt;/li&gt;
&lt;li&gt;&lt;section class="fullwidth"&gt;&lt;a href="http://www.myce.com/news/google-sopa-is-pro-internet-censorship-stymies-cybersecurity-54652/" target="_blank"&gt;http://www.myce.com/news/google-sopa-is-pro-internet-censorship-stymies-cybersecurity-54652/&lt;/a&gt;&lt;/section&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/section&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-2879200676501301271?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/Nb1tvPQANt8" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/2879200676501301271/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/11/stop-censorship-help-us-stop-internet.html#comment-form" title="3 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2879200676501301271?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2879200676501301271?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/Nb1tvPQANt8/stop-censorship-help-us-stop-internet.html" title="Stop Censorship: Help us stop the Internet Blacklist Legislation" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-c4TcM-S6WV4/TsUevdSzLsI/AAAAAAAAETU/7SesLHkQSsA/s72-c/headertitle.png" height="72" width="72" /><thr:total>3</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/11/stop-censorship-help-us-stop-internet.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEcNRnY_fip7ImA9WhRTFUw.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-3353551545736445989</id><published>2011-11-04T23:51:00.000+03:30</published><updated>2011-11-05T20:24:57.846+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-05T20:24:57.846+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="The White House" /><category scheme="http://www.blogger.com/atom/ns#" term="Vulnerability" /><category scheme="http://www.blogger.com/atom/ns#" term="XSS" /><title>Persistent XSS Vulnerability in White House Website</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-q-3kLstSLvY/TrVqLYHaziI/AAAAAAAAEQQ/bu1oR-hkRlY/s1600/US-WhiteHouse-Logo%255B4%255D.png" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" height="135" src="http://2.bp.blogspot.com/-q-3kLstSLvY/TrVqLYHaziI/AAAAAAAAEQQ/bu1oR-hkRlY/s200/US-WhiteHouse-Logo%255B4%255D.png" width="200" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;b&gt;The Hacker News:&lt;/b&gt; &lt;a href="http://www.1337core.de/" rel="nofollow"&gt;Alexander Fuchs&lt;/a&gt;, A German Security Researcher Discover Persistent XSS Vulnerability in Official website of &lt;a href="https://wwws.whitehouse.gov/petitions/%21/petition/security/WxgwM7DS" rel="nofollow"&gt;White House&lt;/a&gt;.&lt;br /&gt;
&lt;br /&gt;
"&lt;i&gt;The petition system is vulnerable. Every Petition i start or join will execute my code. I could join all petitions and my code will be executed on all users who visit the petition system.&lt;/i&gt;" He said.&lt;br /&gt;
Read full story in German: &lt;a href="http://www.1337core.de/2011/die-whitehouse-gov-lol-petition/"&gt;http://www.1337core.de/2011/die-whitehouse-gov-lol-petition/&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-ebCIE-kPVZg/TrRIIdrzlKI/AAAAAAAAEOY/plr95JS8BrI/s1600/XSS2.PNG" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="261" src="http://3.bp.blogspot.com/-ebCIE-kPVZg/TrRIIdrzlKI/AAAAAAAAEOY/plr95JS8BrI/s400/XSS2.PNG" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
The XSS Demo is here: &lt;a href="https://wwws.whitehouse.gov/petitions/%21/petition/security/WxgwM7DS" rel="nofollow"&gt;https://wwws.whitehouse.gov/petitions/!/petition/security/WxgwM7DS&lt;/a&gt;&lt;br /&gt;
Advisory: &lt;a href="http://vulnerability-lab.com/get_content.php?id=308" rel="nofollow"&gt;http://vulnerability-lab.com/get_content.php?id=308&lt;/a&gt;&lt;br /&gt;
What is XSS? &lt;a href="http://en.wikipedia.org/wiki/Cross-site_scripting"&gt;http://en.wikipedia.org/wiki/Cross-site_scripting&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-3353551545736445989?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/UPV2IPm767c" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/3353551545736445989/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/11/persistent-xss-vulnerability-in-white.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/3353551545736445989?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/3353551545736445989?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/UPV2IPm767c/persistent-xss-vulnerability-in-white.html" title="Persistent XSS Vulnerability in White House Website" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-q-3kLstSLvY/TrVqLYHaziI/AAAAAAAAEQQ/bu1oR-hkRlY/s72-c/US-WhiteHouse-Logo%255B4%255D.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/11/persistent-xss-vulnerability-in-white.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0IAQHs6eyp7ImA9WhRTFE0.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-2254030871258088316</id><published>2011-11-04T14:48:00.000+03:30</published><updated>2011-11-04T14:49:01.513+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-04T14:49:01.513+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Mozilla" /><category scheme="http://www.blogger.com/atom/ns#" term="Browser" /><category scheme="http://www.blogger.com/atom/ns#" term="Firefox" /><title>Forward button to become optional in Firefox</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-RM2IJZjla-c/TrPI7AIPzNI/AAAAAAAAEOI/3FuYNo19rFc/s1600/logo-only.png" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" height="200" src="http://1.bp.blogspot.com/-RM2IJZjla-c/TrPI7AIPzNI/AAAAAAAAEOI/3FuYNo19rFc/s200/logo-only.png" width="200" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;b&gt;mozillalinks.org:&lt;/b&gt; Do you need the forward button? Most likely yes, but it is rarely 
used compared to the back button, which is the single most used widget 
in any browser user interface. So it doesn’t make sense to keep it 
present at all times, stealing focus from its helpful neighbor.&lt;br /&gt;
&lt;br /&gt;
To address this, current Firefox nightlies feature the forward button
 as optional. If there is nowhere to go further, the button is hidden 
instead of just disabled as shown in the screenshot below.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-xHO3pjNSY9M/TrO_oqxjDLI/AAAAAAAAEOA/LEk_yc5XCI8/s1600/optional_forward_button.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="57" src="http://2.bp.blogspot.com/-xHO3pjNSY9M/TrO_oqxjDLI/AAAAAAAAEOA/LEk_yc5XCI8/s320/optional_forward_button.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
Since it is only in nightlies at this time, Firefox 10 (expected for 
early 2012) is the earliest we will see this change in a final Firefox 
release.&lt;br /&gt;
&lt;br /&gt;
If you want this behavior and remove some clutter today, add these lines to your &lt;i&gt;userChrome.css&lt;/i&gt; file located in your profile folder*:&lt;br /&gt;
&lt;br /&gt;
&lt;pre style="padding-left: 30px;"&gt;&lt;code&gt;/* Conditionally hide the Forward button */
#forward-button[disabled="true"] { &amp;nbsp;display: none; } &lt;/code&gt;&lt;/pre&gt;
&lt;br /&gt;
Note that the back button won’t integrate with the location bar as in the nightlies.&lt;br /&gt;
&lt;br /&gt;
* To open your profile folder, go to &lt;i&gt;about:support&lt;/i&gt; and push the &lt;b&gt;Open Containing Folder&lt;/b&gt; button. If &lt;i&gt;userChrome.css&lt;/i&gt; is not present, just copy or rename &lt;i&gt;userChrome-example.css&lt;/i&gt; and add the lines below.&lt;i&gt;&lt;br /&gt;
&lt;/i&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-2254030871258088316?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/GNDYz5fLNOE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/2254030871258088316/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/11/forward-button-to-become-optional-in.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2254030871258088316?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2254030871258088316?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/GNDYz5fLNOE/forward-button-to-become-optional-in.html" title="Forward button to become optional in Firefox" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-RM2IJZjla-c/TrPI7AIPzNI/AAAAAAAAEOI/3FuYNo19rFc/s72-c/logo-only.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/11/forward-button-to-become-optional-in.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEIDRH09eyp7ImA9WhRTE08.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-2847509567242284874</id><published>2011-11-03T15:45:00.000+03:30</published><updated>2011-11-03T15:46:15.363+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-03T15:46:15.363+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Internet Explorer" /><category scheme="http://www.blogger.com/atom/ns#" term="Safari" /><category scheme="http://www.blogger.com/atom/ns#" term="Mobile Browsers" /><category scheme="http://www.blogger.com/atom/ns#" term="Browser" /><category scheme="http://www.blogger.com/atom/ns#" term="Google Chrome" /><category scheme="http://www.blogger.com/atom/ns#" term="Firefox" /><title>Internet Explorer’s Share of Web Traffic Drops Below 50%</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-v9tVwL3HWIc/TrKFSa0AV7I/AAAAAAAAEN0/lN0nVQ4FpKQ/s1600/internet-explorer-chart-360.jpg" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://2.bp.blogspot.com/-v9tVwL3HWIc/TrKFSa0AV7I/AAAAAAAAEN0/lN0nVQ4FpKQ/s1600/internet-explorer-chart-360.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;b&gt;Mashable:&lt;/b&gt; Internet Explorer
 can no longer claim more than half of the web’s traffic, as of October,
 ending more than a decade of the default Microsoft browser’s reign.&lt;br /&gt;
&lt;br /&gt;
Safari’s hold on 62.17% of mobile traffic has reduced IE’s overall 
share of web browsing, despite still claiming 52.63% of desktop traffic,
 according to &lt;a href="http://www.netmarketshare.com/" target="_blank"&gt;Netmarketshare.com&lt;/a&gt;.&lt;br /&gt;
&lt;br /&gt;
The Microsoft browser’s diminishing share (49.6%) reflects its near 
absence from the realms of mobile and tablet, which now make up 6% of 
web traffic. However, chances are, you gave up on IE long enough ago 
that this milestone makes you more curious as to who actually still uses
 the browser.&lt;br /&gt;
&lt;br /&gt;
As of October, Firefox is the second most popular web browser, accounting for 21.20% of traffic, followed by Google Chrome and Safari, which account for 16.60% and 8.72% respectively. &lt;br /&gt;
&lt;br /&gt;
Chrome, which recently celebrated its third birthday, experienced the most expansion in October, increasing its share of the desktop market 1.42%. &lt;br /&gt;
&lt;br /&gt;
Safari, the default browser in Apple’s iPhone and iPad, continues to increase its dominance over the mobile web, gaining 6.58% of the market. Safari’s share is increasing faster than the iPhone’s, probably due to how much mobile traffic is now driven by iPads.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-2847509567242284874?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/1XiBHB69PQw" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/2847509567242284874/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/11/internet-explorers-share-of-web-traffic.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2847509567242284874?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2847509567242284874?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/1XiBHB69PQw/internet-explorers-share-of-web-traffic.html" title="Internet Explorer’s Share of Web Traffic Drops Below 50%" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-v9tVwL3HWIc/TrKFSa0AV7I/AAAAAAAAEN0/lN0nVQ4FpKQ/s72-c/internet-explorer-chart-360.jpg" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/11/internet-explorers-share-of-web-traffic.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEYBRXc9cSp7ImA9WhRTE08.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-8333198585904022540</id><published>2011-11-03T15:39:00.000+03:30</published><updated>2011-11-03T15:39:14.969+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-03T15:39:14.969+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Extension" /><category scheme="http://www.blogger.com/atom/ns#" term="Google Plus" /><category scheme="http://www.blogger.com/atom/ns#" term="Google" /><category scheme="http://www.blogger.com/atom/ns#" term="Google Chrome" /><title>Google Releases Official Google+ Notification Extension For Chrome</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://1.bp.blogspot.com/-d9jl6_Vv0Tg/TrKEVqq8GUI/AAAAAAAAENs/FQ7yyiEeu58/s1600/new-chrome-logo.png" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/-d9jl6_Vv0Tg/TrKEVqq8GUI/AAAAAAAAENs/FQ7yyiEeu58/s1600/new-chrome-logo.png" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;b&gt;gHacks.net&lt;/b&gt;: If you are a heavy user of Google’s Google+ social networking product
 you are probably keeping the site running in a tab all the time to 
never miss new messages. But even if you do, you need to switch back to 
the tab regularly to see if there are any new notifications on Google+.&lt;br /&gt;
&lt;br /&gt;
Notifier
 extensions make sure that users stay informed even if they close the 
Google+ browser window. Up until now Chrome users could make use of 
third party notifiers which, will working perfectly, were not official 
which may have kept some users from installing and using those 
extensions.&lt;br /&gt;
&lt;br /&gt;
Google yesterday released the official Google+ 
notification extension for the Google Chrome browser.&lt;br /&gt;
Google+ 
Notifications works in principle just like any other notification 
extension. A new message count is displayed as an icon in the Chrome 
address bar upon installation. The count goes up for new unread messages
 and down once those messages get read by the user.&lt;br /&gt;
&lt;br /&gt;
The button of 
the notification extension turns red whenever updates are waiting for 
the user. A click on the button displays all recent messages and updates
 on Google+. This feature is a copy of the Google Toolbar button that 
offers the exact same functionality.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-zEcFel-q3ZA/TrKD4snc6jI/AAAAAAAAENk/f0VH8VQb000/s1600/google%252Bnotifications.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="250" src="http://4.bp.blogspot.com/-zEcFel-q3ZA/TrKD4snc6jI/AAAAAAAAENk/f0VH8VQb000/s400/google%252Bnotifications.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&amp;nbsp;Notifications
 include updates on who added you on Google+ and who added a comment or 
+1 to one of your posts or a post you commented on.&lt;br /&gt;
&lt;br /&gt;
A click on an 
update leads directly to the Google+ website where it can be read in 
full. The notifications window also links directly to the Google+ user 
profile and offers to load the “all notifications” page on the website 
as well.&lt;br /&gt;
&lt;br /&gt;
Heavy Google+ users on Chrome may find the new official 
Google+ Notifications extension by Google quite handy. Users can install
 the extension directly &lt;a href="https://chrome.google.com/webstore/detail/boemmnepglcoinjcdlfcpcbmhiecichi" target="_blank"&gt;on the&lt;/a&gt; Google Chrome Web Store page. (&lt;a href="http://techdows.com/2011/11/google-plus-notifications-chrome-extension-from-google.html?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+Techdows+%28techdows%29" target="_blank"&gt;via&lt;/a&gt;)&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-8333198585904022540?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/GurIay9RdZ0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/8333198585904022540/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/11/google-releases-official-google.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8333198585904022540?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/8333198585904022540?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/GurIay9RdZ0/google-releases-official-google.html" title="Google Releases Official Google+ Notification Extension For Chrome" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-d9jl6_Vv0Tg/TrKEVqq8GUI/AAAAAAAAENs/FQ7yyiEeu58/s72-c/new-chrome-logo.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/11/google-releases-official-google.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Ck8GRHs6fyp7ImA9WhRTE08.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-6635733296659998452</id><published>2011-11-03T15:16:00.000+03:30</published><updated>2011-11-03T15:17:05.517+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-03T15:17:05.517+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="0-Day" /><category scheme="http://www.blogger.com/atom/ns#" term="Duqu" /><category scheme="http://www.blogger.com/atom/ns#" term="Vulnerability" /><category scheme="http://www.blogger.com/atom/ns#" term="review" /><category scheme="http://www.blogger.com/atom/ns#" term="Microsoft" /><category scheme="http://www.blogger.com/atom/ns#" term="report" /><title>Duqu exploits previously unknown vulnerability in Windows kernel</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-L0x69Thuchg/TrJ-5StIItI/AAAAAAAAENc/uwDw72ZGL6o/s1600/Microsoft_Logo.png" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/-L0x69Thuchg/TrJ-5StIItI/AAAAAAAAENc/uwDw72ZGL6o/s1600/Microsoft_Logo.png" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;a href="http://www.h-online.com/security/" target="_blank"&gt;&lt;b&gt;The H-Online Security&lt;/b&gt;&lt;/a&gt;: Microsoft has confirmed a &lt;a href="http://www.crysys.hu/" rel="external" target="_blank"&gt;report&lt;/a&gt; from Budapest-based Laboratory of Cryptography and System Security (CrySyS), which claimed that the &lt;a href="http://techblog.omidfarhang.com/2011/10/duqu-son-of-stuxnet.html" target="_blank" title="New spyware from Stuxnet developers  – 19 October 2011"&gt;Duqu bot&lt;/a&gt;
 spreads by exploiting a zero day vulnerability in the Windows kernel. 
How it spreads had previously been unknown. CrySyS discovered the 
Windows vulnerability whilst analysing the installer. The bot, which 
anti-virus software firm Symantec believes is related to Stuxnet,
 infects target systems using a specially crafted Word file which 
injects the malware into the system using a kernel exploit. Microsoft is
 already working on a patch.&lt;br /&gt;
&lt;br /&gt;
Symantec &lt;a href="http://www.symantec.com/connect/w32-duqu_status-updates_installer-zero-day-exploit" rel="external" target="_blank"&gt;says&lt;/a&gt;
 that in at least one case, attackers have already taught Duqu to spread
 via network shares. This allowed the bot to spread through the company 
network and even infect systems with no direct internet access. The 
latter were then supplied with instructions from the command and control
 server by bots which did have internet access.&lt;br /&gt;
&lt;br /&gt;
Until now, Duqu has reportedly only been used for targeted attacks. 
The installer examined by Symantec was set to be active during an 
eight-day window in August, only. Symantec has already identified 
possible infections at six companies operating in France, The 
Netherlands, Switzerland, the Ukraine, India, Iran, Sudan and Vietnam. 
Other security companies claim to have discovered infections in the UK, 
Austria and Indonesia. To date, Duqu has not been identified at German 
companies. The German Federal Office for Information Security (&lt;a href="https://www.bsi.bund.de/EN/Home/home_node.html" rel="external" target="_blank"&gt;BSI&lt;/a&gt;) has specifically asked businesses to inform it of any cases of infection.&lt;br /&gt;
&lt;br /&gt;
One area in which Duqu has been deployed is to carry out espionage 
against manufacturers of industrial control systems. This suggests that 
the attackers may be using the stolen information to plan new attacks on
 industrial control systems, such as those used in power plants. Stuxnet
 was initially deployed to sabotage Iran's nuclear programme. Stuxnet 
also exploited previously unknown vulnerabilities in Windows.&lt;br /&gt;
&lt;br /&gt;
In the meantime, security specialists from Dell's SecureWorks Counter Threat Unit (CTU) have &lt;a href="http://www.secureworks.com/research/threats/duqu/" rel="external" target="_blank"&gt;expressed&lt;/a&gt;
 doubt as to whether Duqu is really related to Stuxnet. They report that
 although both pieces of malware utilise broadly similar rootkit 
techniques, such as a kernel driver which first decrypts an encrypted 
DLL and then injects it into other processes, these techniques are now 
standard practice and are used by many pieces of malware unrelated to 
Stuxnet. Duqu's payload, according to Dell, bears no relation to 
Stuxnet's and does not suggest a relationship between the two.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-6635733296659998452?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/nfDGRdJCVxY" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/6635733296659998452/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/11/duqu-exploits-previously-unknown.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/6635733296659998452?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/6635733296659998452?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/nfDGRdJCVxY/duqu-exploits-previously-unknown.html" title="Duqu exploits previously unknown vulnerability in Windows kernel" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-L0x69Thuchg/TrJ-5StIItI/AAAAAAAAENc/uwDw72ZGL6o/s72-c/Microsoft_Logo.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/11/duqu-exploits-previously-unknown.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkQHSH49cSp7ImA9WhRTE08.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-3010878356300456226</id><published>2011-11-03T15:08:00.002+03:30</published><updated>2011-11-03T15:08:59.069+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-03T15:08:59.069+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Facebook" /><category scheme="http://www.blogger.com/atom/ns#" term="facebook phishing" /><category scheme="http://www.blogger.com/atom/ns#" term="scam" /><category scheme="http://www.blogger.com/atom/ns#" term="advice" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>Facebook Scam: Girl killed herself on Halloween</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;b&gt;&lt;a href="http://nakedsecurity.sophos.com/" target="_blank"&gt;SophosLabs&lt;/a&gt;:&lt;/b&gt; Scammers have put a new spin on an old Facebook scam, claiming that a
 girl killed herself on Halloween after her father posted a message on 
her wall.&lt;br /&gt;
&lt;br /&gt;
Facebook users are sharing messages with their friends, claiming to link to the salacious content.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-u6Wa5DqJ4qo/TrJ8NG98QmI/AAAAAAAAENE/bKPWTOWW_nU/s1600/halloween-status.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="125" src="http://2.bp.blogspot.com/-u6Wa5DqJ4qo/TrJ8NG98QmI/AAAAAAAAENE/bKPWTOWW_nU/s400/halloween-status.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;blockquote&gt;
&lt;tt&gt;Girl-Killed-Herself-on-Halloween-After-Dad-Posted-This-on-Her-Wall&lt;/tt&gt;&lt;br /&gt;
&lt;tt&gt;[LINK]&lt;/tt&gt;&lt;br /&gt;
&lt;tt&gt;This is unbelievable.. shocking..&lt;/tt&gt;
&lt;/blockquote&gt;
The messages are currently spreading very quickly on Facebook, as - 
at the moment at least - Facebook's built-in security systems are not 
blocking them.&lt;br /&gt;
&lt;br /&gt;
We've seen similar scams in the past, of course, including some which claimed that the girl killed herself on Christmas Eve rather than at Halloween.&lt;br /&gt;
&lt;br /&gt;
Of course, the story is purely designed to lure you into clicking on the link.  So what do you see if you do click on the link?&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-waQtzPR4Dts/TrJ8iUYuV7I/AAAAAAAAENM/GntWiANWxiQ/s1600/halloween-scam.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="333" src="http://3.bp.blogspot.com/-waQtzPR4Dts/TrJ8iUYuV7I/AAAAAAAAENM/GntWiANWxiQ/s400/halloween-scam.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
You are taken to a third-party webpage where you are told that in 
order to view the shocking message left by the father on his late 
daughter's Facebook wall, you will have to "Share" and "Recommend" the 
link with your friends.&lt;br /&gt;
&lt;br /&gt;
Woah!!  Would you really share and recommend a link before you've actually found out &lt;i&gt;what the content is?&lt;/i&gt;&lt;br /&gt;
&lt;br /&gt;
Sadly, lots of Facebook users are so curious that they will do exactly that - helping the message spread for scammers.&lt;br /&gt;
&lt;br /&gt;
And why do the scammers want the message to spread?&lt;br /&gt;
&lt;br /&gt;
Because it drives traffic to online surveys like this, which earn the scammers affiliate commission:&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-jyAEM3yb5m8/TrJ8ts9P4jI/AAAAAAAAENU/U4mknXLsol8/s1600/halloween-survey.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="217" src="http://2.bp.blogspot.com/-jyAEM3yb5m8/TrJ8ts9P4jI/AAAAAAAAENU/U4mknXLsol8/s400/halloween-survey.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
If you were fooled into participating in this scam remove the message
 from your newsfeed, and delete any messages you may have inadvertently 
shared with your friends.  That way at least you are no longer spreading
 it with your online chums.&lt;br /&gt;
&lt;br /&gt;
Make sure that you keep informed about the latest scams spreading fast across Facebook and other internet attacks. Join the &lt;a href="http://www.facebook.com/omidsblog" target="_blank" title="Link to Facebook fan page for Sophos"&gt;&lt;b&gt;Omid's Blog page on Facebook&lt;/b&gt;&lt;/a&gt;, where people regularly share information on threats and discuss the latest security news.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-3010878356300456226?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/1kez0WWk_4M" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/3010878356300456226/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/11/facebook-scam-girl-killed-herself-on.html#comment-form" title="2 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/3010878356300456226?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/3010878356300456226?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/1kez0WWk_4M/facebook-scam-girl-killed-herself-on.html" title="Facebook Scam: Girl killed herself on Halloween" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-u6Wa5DqJ4qo/TrJ8NG98QmI/AAAAAAAAENE/bKPWTOWW_nU/s72-c/halloween-status.jpg" height="72" width="72" /><thr:total>2</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/11/facebook-scam-girl-killed-herself-on.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEUHQXo_cCp7ImA9WhdaFUs.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-6792689994939893127</id><published>2011-10-25T20:33:00.000+03:30</published><updated>2011-10-25T20:33:50.448+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-25T20:33:50.448+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="malware" /><category scheme="http://www.blogger.com/atom/ns#" term="forum" /><category scheme="http://www.blogger.com/atom/ns#" term="advice" /><category scheme="http://www.blogger.com/atom/ns#" term="report" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>MyBB downloads were infected</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-A3rWc1eyZhU/TqbranNHc3I/AAAAAAAAEK4/eKHtIWE4ow0/s1600/MyBB_logo_200.png" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" src="http://3.bp.blogspot.com/-A3rWc1eyZhU/TqbranNHc3I/AAAAAAAAEK4/eKHtIWE4ow0/s1600/MyBB_logo_200.png" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;b&gt;&lt;a href="http://www.h-online.com/"&gt;The H-Security&lt;/a&gt;&lt;/b&gt;: In a blog posting, the MyBB &lt;a href="http://blog.mybb.com/2011/10/25/some-closure-on-the-1-6-4-security-vulnerability/"&gt;development team has confirmed&lt;/a&gt; that the download package for version 1.6.4 of MyBB had been modified to include malicious code. Unknown attackers were able to exploit a vulnerability in the MyBB web site's CMS (content management system) to inject and execute PHP code.&lt;br /&gt;
&lt;br /&gt;
The attackers placed a contaminated version of MyBB, containing a backdoor, on the server. It is unclear exactly when the hack took place, meaning that all downloads of 1.6.4 prior to 6 October could be affected. Users with MyBB systems are advised to check their installations and apply a patch. For rapid disinfection, the &lt;a href="http://blog.mybb.com/2011/10/06/1-6-4-security-vulnerabilit/"&gt;developers are advising&lt;/a&gt; users to replace the /index.php file with a clean version and to delete the /install/ directory.&lt;br /&gt;
&lt;br /&gt;
The MyBB development team is currently mulling over what conclusions can be drawn from the successful attack. One countermeasure they intend to take is to publish checksums to enable users to check that their downloads are genuine; however, this would not be particularly effective if the attackers have control of the server on which the checksums are store. A better solution would be digital signatures, since these cannot be faked without the secret key – though the problem with digital signatures is that, unless the update system does so automatically, almost no-one ever checks them.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-6792689994939893127?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/YnFk6yexLEI" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/6792689994939893127/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/10/mybb-downloads-were-infected.html#comment-form" title="2 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/6792689994939893127?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/6792689994939893127?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/YnFk6yexLEI/mybb-downloads-were-infected.html" title="MyBB downloads were infected" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-A3rWc1eyZhU/TqbranNHc3I/AAAAAAAAEK4/eKHtIWE4ow0/s72-c/MyBB_logo_200.png" height="72" width="72" /><thr:total>2</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/10/mybb-downloads-were-infected.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkcDSXs6eSp7ImA9WhdaFUs.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-5998778087310853824</id><published>2011-10-25T19:57:00.001+03:30</published><updated>2011-10-25T19:57:58.511+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-25T19:57:58.511+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="social networking" /><category scheme="http://www.blogger.com/atom/ns#" term="Facebook" /><category scheme="http://www.blogger.com/atom/ns#" term="hoax" /><category scheme="http://www.blogger.com/atom/ns#" term="scam" /><title>Hoax: The Pink Profile Pic Facebook virus hoax</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;a href="http://nakedsecurity.sophos.com/"&gt;SophosLabs&lt;/a&gt;: Have you noticed the profile pics of some of your Facebook friends have acquired a pink tinge?&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-u3Jzz1sFsNQ/TqbhomWMkeI/AAAAAAAAEKg/ruHjW6OiDRk/s1600/pink-profile-pic.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="269" src="http://2.bp.blogspot.com/-u3Jzz1sFsNQ/TqbhomWMkeI/AAAAAAAAEKg/ruHjW6OiDRk/s400/pink-profile-pic.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
Rumours have hit the social networking site that the Facebook app that turns your profile picture pink carries "keylogger malware" that can spy on your keypresses, and steal your passwords - not just from Facebook, but from online banks you may log into as well.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-7nYslvbJK7Y/TqbiPGo_tbI/AAAAAAAAEKo/Fctwl2iTni0/s1600/pink-hoax.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="189" src="http://2.bp.blogspot.com/-7nYslvbJK7Y/TqbiPGo_tbI/AAAAAAAAEKo/Fctwl2iTni0/s400/pink-hoax.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
One warning reads as follows:&lt;br /&gt;
&lt;blockquote class="tr_bq"&gt;
&lt;i&gt;ABC News 24 just released a statement about a virus on facebook app that adds a pink tinge to your profile picture to `raise money for cancer`.&lt;br /&gt;Be aware this fake third-party app installs a virus on the machine you used to access the app. Apparently its a keylogger malware that searches for bank details and passwords etc. Facebook allows keylogger in its apps to aid predictive search algorithms, and therefore the virus hasnt been picked up.&lt;br /&gt;Keep a look out for any of your friends who may have fallen victim to this app. Apparently, they should be easily identifiable with a pink tinge to their profile picture.&lt;/i&gt;&lt;/blockquote&gt;
However, the warning is balderdash. ABC News has released no such warning, the app is not malicious and we have seen no evidence that it contains a keylogger. The truth is that your Facebook friends are doing something positive - helping raise money and awareness for the fight against breast cancer.&lt;br /&gt;
&lt;br /&gt;
Australian bank CUA raises funds every October for Breast Cancer Awareness Month, and this year decided to share an app that would change users' profile pictures pink to show that they were supporting the campaign.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-tCm3oC8td18/TqbiXNB0UYI/AAAAAAAAEKw/TO_AZPST-u8/s1600/pink-my-profile-app.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="400" src="http://4.bp.blogspot.com/-tCm3oC8td18/TqbiXNB0UYI/AAAAAAAAEKw/TO_AZPST-u8/s400/pink-my-profile-app.jpg" width="283" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
Remember to always get your computer security advice from a computer security company. Friends may be well-intentioned in passing on warnings, but it's always good to check your facts before forwarding them any further.&lt;br /&gt;
&lt;br /&gt;
If you want to learn about the real threats on Facebook you should &lt;a href="http://www.facebook.com/omidsblog"&gt;join the Omid's Blog facebook page&lt;/a&gt;, where I'll keep you up-to-date on the latest rogue applications, scams and malware attacks threatening social network users.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-5998778087310853824?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/nqYL38xqkwE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/5998778087310853824/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/10/hoax-pink-profile-pic-facebook-virus.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/5998778087310853824?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/5998778087310853824?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/nqYL38xqkwE/hoax-pink-profile-pic-facebook-virus.html" title="Hoax: The Pink Profile Pic Facebook virus hoax" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-u3Jzz1sFsNQ/TqbhomWMkeI/AAAAAAAAEKg/ruHjW6OiDRk/s72-c/pink-profile-pic.jpg" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/10/hoax-pink-profile-pic-facebook-virus.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEYBRHc5eyp7ImA9WhdaE0Q.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-2097781977126536670</id><published>2011-10-23T21:19:00.001+03:30</published><updated>2011-10-23T21:19:15.923+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-23T21:19:15.923+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Search" /><category scheme="http://www.blogger.com/atom/ns#" term="Bing" /><category scheme="http://www.blogger.com/atom/ns#" term="malware" /><category scheme="http://www.blogger.com/atom/ns#" term="advice" /><category scheme="http://www.blogger.com/atom/ns#" term="Yahoo" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>The continuation of dangerous rogue ads on Bing (and Yahoo)</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;b&gt;GFI Labs Blog:&lt;/b&gt; We've noted this before, but Microsoft needs to get a handle on ad placements on Bing. Ok, so Bing isn't the most widely used search engine, but remember that Yahoo plays a part here as well.&lt;br /&gt;
&lt;br /&gt;
In this case, we're talking Sirefef (ZeroAccess aka Max++), probably the nastiest piece of malware circulating on the 'net right now. Sirefef kills any attempt to remove it, and is nearly impossible to clean (short of booting onto a rescue disk and performing cleanup actions, or reformatting).&lt;br /&gt;
&lt;br /&gt;
So just search for "adobe flash", and you might see this ad:&lt;br /&gt;
&lt;br /&gt;
&lt;table align="center" cellpadding="0" cellspacing="0" class="tr-caption-container" style="margin-left: auto; margin-right: auto; text-align: center;"&gt;&lt;tbody&gt;
&lt;tr&gt;&lt;td style="text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-LAmzXqz3E6w/TqRS5ubfO2I/AAAAAAAAEKM/1SbuNzfHTeg/s1600/bing2382348888.png" imageanchor="1" style="margin-left: auto; margin-right: auto;"&gt;&lt;img border="0" height="275" src="http://2.bp.blogspot.com/-LAmzXqz3E6w/TqRS5ubfO2I/AAAAAAAAEKM/1SbuNzfHTeg/s400/bing2382348888.png" width="400" /&gt;&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class="tr-caption" style="text-align: center;"&gt;(That same search term will look identical on Yahoo, since Yahoo displays Bing ads and search results.)&lt;/td&gt;&lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;br /&gt;
Which leads to an innocent-looking "download flash" page:&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-p4X9uBi42xo/TqRTV5iIlII/AAAAAAAAEKU/Rn7B1kgk0rE/s1600/bing2382348888a.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="275" src="http://4.bp.blogspot.com/-p4X9uBi42xo/TqRTV5iIlII/AAAAAAAAEKU/Rn7B1kgk0rE/s400/bing2382348888a.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
Note that the page isn't actually "GetAdobeFlash.com". Instead, it redirects to a directory on a compromised trucking site (arulbrothers.com), downloading a file from torreandaluz (dot) com/flash/Flash Player 10 Setup.exe&lt;br /&gt;
&lt;br /&gt;
So let's download that Flash Player and run it through &lt;a href="http://www.virustotal.com/file-scan/report.html?id=9a94bbce912c9d03b58be5c411d85a49f809e297fe6eee41a54122e0bbe2fac0-1318507455"&gt;VirusTotal&lt;/a&gt;, and no surprise: It's Sirefef.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-2097781977126536670?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/ur_ChZD50L8" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/2097781977126536670/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/10/continuation-of-dangerous-rogue-ads-on.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2097781977126536670?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2097781977126536670?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/ur_ChZD50L8/continuation-of-dangerous-rogue-ads-on.html" title="The continuation of dangerous rogue ads on Bing (and Yahoo)" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-LAmzXqz3E6w/TqRS5ubfO2I/AAAAAAAAEKM/1SbuNzfHTeg/s72-c/bing2382348888.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/10/continuation-of-dangerous-rogue-ads-on.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUcHQHs5eip7ImA9WhdaFE0.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-2234923302172955821</id><published>2011-10-21T01:23:00.000+03:30</published><updated>2011-10-24T01:27:11.522+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-24T01:27:11.522+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Stuxnet" /><category scheme="http://www.blogger.com/atom/ns#" term="malware" /><category scheme="http://www.blogger.com/atom/ns#" term="Duqu" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="review" /><category scheme="http://www.blogger.com/atom/ns#" term="alert" /><title>Duqu, Son of Stuxnet?</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-W9csiY4HWJ8/TqCV1Mg85CI/AAAAAAAAEKE/E8-Ka-qvNoE/s1600/Screen-Shot-2011-10-18-at-12.26.12-PM.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="327" src="http://4.bp.blogspot.com/-W9csiY4HWJ8/TqCV1Mg85CI/AAAAAAAAEKE/E8-Ka-qvNoE/s400/Screen-Shot-2011-10-18-at-12.26.12-PM.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;b&gt;&lt;/b&gt;&lt;br /&gt;
&lt;div&gt;
&lt;b&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/b&gt;&lt;/div&gt;
&lt;b&gt;
Schneier on Security:&lt;/b&gt; A newly discovered piece of malware, Duqu, seems to be a precursor to the next Stuxnet-like worm and uses some of the same techniques as the original. &lt;a href="http://www.schneier.com/blog/archives/2011/10/new_malware_duq.html"&gt;Link to Source&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Symantec: W32.Duqu: The Precursor to the Next Stuxnet&lt;/b&gt;&lt;br /&gt;
Duqu is essentially the precursor to a future Stuxnet-like attack. The threat was written by the same authors (or those that have access to the Stuxnet source code) and appears to have been created since the last Stuxnet file was recovered. Duqu's purpose is to gather intelligence data and assets from entities, such as industrial control system manufacturers, in order to more easily conduct a future attack against another third party. The attackers are looking for information such as design documents that could help them mount a future attack on an industrial control facility. &lt;a href="http://www.symantec.com/connect/w32_duqu_precursor_next_stuxnet"&gt;Read Full Article&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;F-Secure: Duqu – Stuxnet 2:&lt;/b&gt;&lt;br /&gt;
A new backdoor created by someone who had access to the source code of Stuxnet has been found.&lt;br /&gt;
Stuxnet source code is not out in-the-wild (only the binaries). Only the original authors have the source code. So, this new backdoorwas created by the same party that created Stuxnet.&amp;nbsp;&lt;a href="http://www.f-secure.com/weblog/archives/00002255.html"&gt;Read Full Article&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Norman: W32/Duqu – Stuxnet lite?&lt;/b&gt;&lt;br /&gt;
Oct 18th, our competitor Symantec published an extensive report on a malware called Duqu, which appears to bear some resemblance to last year’s Stuxnet worm.  This time the malware does not seem to be aimed at sabotage, but is instead made for intelligence gathering.&amp;nbsp;&lt;a href="http://blogs.norman.com/2011/security-exposed/w32duqu-stuxnet-lite"&gt;Read Full Article&lt;/a&gt;&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;b&gt;Wired: Son of Stuxnet Found in the Wild on Systems in Europe&lt;/b&gt;&lt;br /&gt;
&lt;div&gt;
Duqu, like Stuxnet, masks itself as legitimate code using a driver file signed with a valid digital certificate. The certificate belongs to a company headquartered in Taipei, Taiwan, which Symantec has declined to identify. F-Secure, a security firm based in Finland, has identified the Taipei company as C-Media Electronics Incorporation. The certificate was set to expire on August 2, 2012, but authorities revoked it on Oct. 14, shortly after Symantec began examining the malware. &lt;a href="http://www.wired.com/threatlevel/2011/10/son-of-stuxnet-in-the-wild/"&gt;Read Full Article&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Update, Oct 24, Added Avira Article too:&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;Avira:&amp;nbsp;Stuxnet v2 or TR/Duqu&lt;/b&gt;&lt;br /&gt;
The Stuxnet virus has gone to the next generation: “TR/Duqu”.&lt;br /&gt;
Avira already detects the new malware since VDF 7.11.16.63, which was released on 2011-10-19. &lt;a href="http://techblog.avira.com/2011/10/21/stuxnet-v2-or-trduqu/en/"&gt;Read Full Article&lt;/a&gt;&lt;/div&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-2234923302172955821?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/qBwAvBC2jjw" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/2234923302172955821/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/10/duqu-son-of-stuxnet.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2234923302172955821?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/2234923302172955821?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/qBwAvBC2jjw/duqu-son-of-stuxnet.html" title="Duqu, Son of Stuxnet?" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-W9csiY4HWJ8/TqCV1Mg85CI/AAAAAAAAEKE/E8-Ka-qvNoE/s72-c/Screen-Shot-2011-10-18-at-12.26.12-PM.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/10/duqu-son-of-stuxnet.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0QESXs8eSp7ImA9WhdaEUk.&quot;"><id>tag:blogger.com,1999:blog-22914061.post-586302793618202847</id><published>2011-10-20T23:38:00.001+03:30</published><updated>2011-10-20T23:38:28.571+03:30</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-20T23:38:28.571+03:30</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="malware" /><category scheme="http://www.blogger.com/atom/ns#" term="Ghaddafi" /><category scheme="http://www.blogger.com/atom/ns#" term="attack" /><category scheme="http://www.blogger.com/atom/ns#" term="Twitter" /><title>Twitter Malware Attack: Photos of Dead Gaddafi</title><content type="html">&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://3.bp.blogspot.com/-qShaHlHbgCk/TqB_Hi5exII/AAAAAAAAEJw/YiUB8Oe9kTg/s1600/libya.jpg" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" height="200" src="http://3.bp.blogspot.com/-qShaHlHbgCk/TqB_Hi5exII/AAAAAAAAEJw/YiUB8Oe9kTg/s320/libya.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;b&gt;Mashable&lt;/b&gt;: As reports of former Libyan leader Muammar Gaddafi’s death circulate on the Internet, so is a gruesome cellphone photo of what appears to be his severely wounded body and another that appears to be his dead body. Both are likely opportunities for spammers with bad intentions.&lt;br /&gt;&lt;br /&gt;The first photo was distributed by the news agency AFP after commanders for Libya’s transitional military, the National Transitional Council (NTC), said they had captured Gaddafi after invading his hometown of Sirte. On Thursday, an NTC spokesperson told the &lt;a href="http://www.nytimes.com/2011/10/21/world/africa/libyan-fighters-say-qaddafi-stronghold-has-fallen.html"&gt;New York Times&lt;/a&gt; Gaddafi had been killed, but the U.S. State Department had still not confirmed his death as of 10:00 a.m. ET.&lt;br /&gt;&lt;br /&gt;Celebrations in Libya and a flood of Twitter updates are treating the announcement of Gaddafi’s death as authentic — including a slew of sharing of the photos allegedly showing his capture.&lt;br /&gt;&lt;br /&gt;In the past, photos like this — including alleged photos of Osama Bin Laden’s body — have been easy vehicles for malicious links. One reason is search engines decide which links are legitimate partly by looking at user behavior. When news like Gaddafi’s death breaks, however, there is no history for them to rely on and malicious links mascarading as news can more easily rank high in search results. Another reason is that people often seek such images from unfamiliar sources. Websites or Twitter messages promise to link to a breaking topic and then lead instead to another site or virus. The Gaddafi photo is a prime candidate for this type of malicious links, so it’s wise to use caution when clicking.&lt;br /&gt;&lt;br /&gt;Because of the photo’s violent nature, we have decided not to post it in this article. There is another photo that has been shown on news network &lt;a href="http://english.aljazeera.net/watch_now/"&gt;Al Jazeera&lt;/a&gt; (Warning: this links to graphic content) of Gaddafi’s body that could be susceptible to similar scams.&lt;br /&gt;&lt;br /&gt;So are the photos fake? An NTC official told &lt;a href="http://in.reuters.com/article/2011/10/20/idINIndia-60016820111020"&gt;Reuters&lt;/a&gt; that the apparently dead man in the Al Jazeera photo is Gaddafi. But as CNN &lt;a href="http://news.blogs.cnn.com/2011/10/20/libyan-fighters-say-they-have-captured-gadhafi/"&gt;notes&lt;/a&gt;, “&lt;i&gt;Much caution should be used with these reports because false information has come out previously.&lt;/i&gt;”&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-u-C5qdBzOgQ/TqB_QWtLI0I/AAAAAAAAEJ4/jzUZv7eQErE/s1600/Qaddafi-twitter-1_image.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="117" src="http://4.bp.blogspot.com/-u-C5qdBzOgQ/TqB_QWtLI0I/AAAAAAAAEJ4/jzUZv7eQErE/s400/Qaddafi-twitter-1_image.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/22914061-586302793618202847?l=techblog.omidfarhang.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/OmidsBlog/~4/yC9y6BXarWU" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://techblog.omidfarhang.com/feeds/586302793618202847/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://techblog.omidfarhang.com/2011/10/twitter-malware-attack-photos-of-dead.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/586302793618202847?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/22914061/posts/default/586302793618202847?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/OmidsBlog/~3/yC9y6BXarWU/twitter-malware-attack-photos-of-dead.html" title="Twitter Malware Attack: Photos of Dead Gaddafi" /><author><name>Omid Farhang</name><uri>https://profiles.google.com/117178031642578729941</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="32" height="32" src="//lh4.googleusercontent.com/-DtBxvNlv6xc/AAAAAAAAAAI/AAAAAAAAD-U/fXD95y414Q8/s512-c/photo.jpg" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-qShaHlHbgCk/TqB_Hi5exII/AAAAAAAAEJw/YiUB8Oe9kTg/s72-c/libya.jpg" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://techblog.omidfarhang.com/2011/10/twitter-malware-attack-photos-of-dead.html</feedburner:origLink></entry></feed>

